Massive Infection through 0-day in the Zimbra Email suite

Massive Infection through 0-day in the Zimbra Email suite

Incident Overview On October 7, the email server of a big commercial pharma organization was attacked. It was running Zimbra 8.x version on CentOS and got quickly compromised. Malicious actor exploited Internet-facing Zimbra Collaboration Suite using CVE-2022-41352...
E-Mail Under Attack

E-Mail Under Attack

Why It’s Important Email is one of the most valuable IT systems where organization share their plans, sensitive documents, chats….and even passwords. UnderDefense, in cooperation with the Computer Emergency Response Team of Ukraine (CERT-UA) participated in a series...
Russian APT vs CrowdStrike + MDR + Zimbra

Russian APT vs CrowdStrike + MDR + Zimbra

Why This Is Important Ukrainian cyberwar has become a great platform where the US government and commercial sectors can learn the best protective measures.  Since the Russian-Ukrainian war broke out, Russian hackers have been focusing their attention and cyber...
UnderDefense Achieves ISO 27001:2013

UnderDefense Achieves ISO 27001:2013

UnderDefense ISO 27001:2013 Certificate UnderDefense is a Security-as-a-Service (Sec-a-s-S) & Compliance platform that has been giving a stellar performance in security services, meeting and exceeding our clients’ expectations.  Now we have indisputable...
Russian Сybercriminals Spreading New Tricky Phishing Emails

Russian Сybercriminals Spreading New Tricky Phishing Emails

On April 4, 2022, the government emergency response team of Ukraine CERT-UA has warned of a massive spear-phishing campaign launched by a hacking group UAC-0010 (Armageddon), which is linked to the FSB. It has been informed, that UAC-0010 disseminates malicious emails...