Skip to content
archivevulnerability · 30 Jul 2026 · 07:40 UTC

Russian Hackers Exploit Microsoft OWA Flaw to Keep Mailbox Access After Credential Rotation

last 60 dispatches · spectrum

The Russian threat actors recently linked to the exploitation of a now-patched vulnerability in Zimbra have been observed exploiting another vulnerability, this time in Microsoft Outlook Web Access (OWA), to target U.S. and European government entities, as well as the telecommunications, financial, hospitality, and aerospace sectors. …

grounded ✓primary source ↗
Early access

Get the next one first.

Early access opens the actor API and MCP server first, plus alerts when an adversary you follow lands on the wire. One email when it's ready. Nothing else, ever.

bot-protected