Keep your eyes on these

VERY IMPORTANT

Security Articles

RSS

Operation EmailThief: Active Exploitation of Zero-day XSS Vulnerability in Zimbra

released on 2022-02-04 @ 11:20:09 AM
In December 2021, through its Network Security Monitoring service, Volexity identified a series of targeted spear-phishing campaigns against one of its customers from a threat actor it tracks as TEMP_Heretic. Analysis of the emails from these spear phishing campaigns led to a discovery: the attacker was attempting to exploit a zero-day cross-site scripting (XSS) vulnerability in the Zimbra email platform. Zimbra is an open source email platform often used by organizations as an alternative to Microsoft Exchange.