As cited
Copy frozen at (site build).
vulnerabilities
Russian hackers exploit Exchange OWA zero-day for long-term mailbox access
Russian state-sponsored group Laundry Bear (Void Blizzard) is exploiting an unpatched Exchange Outlook Web Access vulnerability to deploy a backdoor called OWAReaper in targeted email campaigns, granting persistent mailbox access. The malware facilitates long-term espionage by harvesting email credentials and maintaining presence on compromised systems.
Why it matters: Organizations running vulnerable Exchange OWA instances face credential theft and mailbox compromise from a nation-state adversary; patch or restrict OWA access immediately if you run Exchange.
- Source published
- First seen by Cybersecurity Tracker
Source attribution
Correction
Correction recorded as of .
vulnerabilities
Russian hackers exploit Exchange OWA zero-day for long-term mailbox access
Russian state-sponsored group Laundry Bear (Void Blizzard) is exploiting an unpatched Exchange Outlook Web Access vulnerability to deploy a backdoor called OWAReaper in targeted email campaigns, granting persistent mailbox access. The malware facilitates long-term espionage by harvesting email credentials and maintaining presence on compromised systems.
Why it matters: Organizations running vulnerable Exchange OWA instances face credential theft and mailbox compromise from a nation-state adversary; patch or restrict OWA access immediately if you run Exchange.
- Source published
- First seen by Cybersecurity Tracker