INTERPOL crackdown on West African crime rings uncovers troubling new trend
2026-08-25T14:51:40Z•0e0e6429159be9149f1f0954b3ad02e41183bb0a3ab851d4ecd22f1cbf2e8bad
CVE-2026-73570AI supply chain riskClickFixShinyHuntersZimbra Collaboration Suiteactive exploitationcode injectioncredential theftcybercrimeinternet-facing systemsmacOS malwaremalvertisingsocial engineering
What happened
Help Net Security reports active exploitation of CVE-2026-73570 against at least 274 internet-facing Zimbra Collaboration Suite servers, using a code-injection vulnerability fixed in ZCS 10.1.20. The feed also describes a macOS ClickFix campaign distributing malware through fake OpenAI Codex advertisements and social-engineering incidents involving ShinyHunters, alongside broader defensive and industry announcements.
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- helpnetsecurity
- Record identifier
- 0e0e6429159be9149f1f0954b3ad02e41183bb0a3ab851d4ecd22f1cbf2e8bad
- Enrichment time
- 2026-08-25T14:51:40Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.