INTERPOL crackdown on West African crime rings uncovers troubling new trend

2026-08-25T14:51:40Z0e0e6429159be9149f1f0954b3ad02e41183bb0a3ab851d4ecd22f1cbf2e8bad
CVE-2026-73570AI supply chain riskClickFixShinyHuntersZimbra Collaboration Suiteactive exploitationcode injectioncredential theftcybercrimeinternet-facing systemsmacOS malwaremalvertisingsocial engineering

What happened

Help Net Security reports active exploitation of CVE-2026-73570 against at least 274 internet-facing Zimbra Collaboration Suite servers, using a code-injection vulnerability fixed in ZCS 10.1.20. The feed also describes a macOS ClickFix campaign distributing malware through fake OpenAI Codex advertisements and social-engineering incidents involving ShinyHunters, alongside broader defensive and industry announcements.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
helpnetsecurity
Record identifier
0e0e6429159be9149f1f0954b3ad02e41183bb0a3ab851d4ecd22f1cbf2e8bad
Enrichment time
2026-08-25T14:51:40Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.