Skip to content
COOEY
ADVISORIES
1 advisory

CISA cyber & ICS and DC3 (DoD Cyber Crime Center / DCISE) threat products relevant to the DIB — each read by dex into a categorized card: the gist, why it matters, who's affected, and what to do.

Nation-state CISA 2026-07-23

Russian State-Supported Cyber Actors Conduct Phishing Campaign Targeting Users of Zimbra Collaboration Suite ↗

Russian state-supported actors are exploiting a zero-day in Zimbra Collaboration Suite to steal email data via phishing.

Russian state-supported cyber actors, known as LAUNDRY BEAR, have been targeting Western organizations using the Zimbra Collaboration Suite since at least July 2025. They are exploiting a zero-day vulnerability (CVE-2025-66376) to covertly acquire email data, demonstrating their continued use of phishing and novel exploits.

AFFECTEDZimbra Collaboration Suite

▸ DO  Patch Zimbra Collaboration Suite immediately and hunt for compromised email accounts.

#state-sponsored#exploited-in-wild#phishing#mitigations