Frequency
3
occurrences
First Seen
March 18, 2026
Last Seen
July 24, 2026
Related Threat Clusters
-
Russian Hackers Exploit Zimbra Zero-Day for Espionage Campaign
Since July 2025, Russian state-backed hackers, known as Laundry Bear, have exploited a zero-click vulnerability (CVE-2025-66376) in the Zimbra Collaboration Suite to infiltrate Western government and commercial…
82 articles · Updated July 23, 2026 -
APT28 Exploits Roundcube Vulnerabilities in Targeted Cyber Espionage Campaign
APT28 (Fancy Bear) has been linked to Operation Roundish, utilizing a comprehensive Roundcube exploitation toolkit against Ukrainian government targets. The toolkit, discovered in January 2026, includes XSS payloads, a…
3 articles · Updated July 23, 2026 -
FancyBear Server Leak Exposes NATO Targets and Stolen Credentials
On March 11, 2026, a significant operational security failure by the Russian state-linked hacking group FancyBear led to the exposure of a server containing stolen credentials, two-factor authentication (2FA) secrets,…
2 articles · Updated March 18, 2026
Recent Intelligence Reports
- Operation Roundish — hunt.io · July 24, 2026
- ta458 roundpress exploits — Proofpoint · July 23, 2026
- FancyBear Server Exposure Reveals Stolen Credentials, 2FA Secrets and NATO — Cybersecuritynews · March 18, 2026