Home / Technology / Russian Hackers Exploit 'Half-Click' on Zimbra Emails
Russian Hackers Exploit 'Half-Click' on Zimbra Emails
23 Jul
Summary
- Russian hackers stole emails using a 'half-click exploit'.
- The exploit targeted a weakness in Zimbra software, requiring no user action.
- US and allies blame Russian Laundry Bear group for the spy campaign.

A sophisticated cyber espionage campaign, attributed to a Russian government-supported hacking group known as Laundry Bear, has successfully infiltrated Zimbra email accounts. The attackers utilized a "half-click exploit," a technique that exploits a previously unpatched vulnerability in Zimbra software. This method bypasses the need for users to open malicious attachments or click on links, compromising accounts simply upon opening an email.
Intelligence agencies from the United States, Canada, Britain, Australia, New Zealand, Denmark, the Czech Republic, and other European nations have jointly issued an alert detailing the campaign. The operation reportedly focused heavily on Ukraine before extending its reach to targets within the United States and other NATO alliance members. This targeting strategy has raised significant concerns among security officials regarding its implications for cybersecurity within allied nations.