vulnerability
Hackers Target Zimbra Servers in Active Exploitation Campaign
Critical
Summary
A recently patched Zimbra vulnerability (CVE-2026-73570) is currently being actively exploited by threat actors, primarily linked to Russian and Chinese state-sponsored hackers. Attackers are leveraging this flaw to gain full control of Zimbra servers, allowing them to steal credentials, establish persistence, and move laterally within a network.
Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data