threat-intel Russian Espionage Group Exploited Zimbra Zero-Day to Steal Mail and 2FA Codes A Russian state-sponsored espionage group exploited a zero-click vulnerability in Zimbra's webmail client to steal email data, two-factor codes, and credentials from Western government and commercial organizations since July 2025. The group, tracked under various names including LAUNDRY BEAR, Void Blizzard, CL-STA-1114… The Hacker News · Jul 23, 2026 High CVE-2025-66376USUKCJzero-dayxsscredential theft