Summary
Russian hackers, identified as Laundry Bear (also known as Void Blizzard), are exploiting a vulnerability in the Zimbra Collaboration Suite, allowing them to steal emails and authentication data without users clicking links or attachments. CISA, NSA, and FBI have issued a warning about this "zero-click" or "half-click" attack, which has targeted over 10 Western organizations since July 2025, emphasizing the danger of unpatched systems.