International alert spotlights Russia-linked attacks on Zimbra webmail

2026-07-24T08:51:54Ze3df188dd84433ccd3aec6daa17bb0655f33af46fb3d10e4c0f45f45d3de1435
CISA 2015Everest ransomwareLaundry BearOrigin EnergyRussia-linkedStadler RailState DepartmentZimbracyber scamsdata breachinformation sharingnation-state activityphishingransom demandvisa restrictionswebmail compromisezero-click phishing

What happened

Collection of cybersecurity news: An international alert warns that Kremlin-linked group Laundry Bear is using a zero-click phishing technique to compromise Zimbra webmail accounts worldwide, per U.S. and allied advisories. The U.S. State Department announced new visa restrictions targeting individuals tied to transnational cyber-scam operations. Australian energy supplier Origin Energy confirmed a customer data breach and is investigating the scope. Swiss train maker Stadler Rail refused a $12.3M ransom demand from the Everest ransomware actors after technical data was stolen from a supplier.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
therecord_media
Record identifier
e3df188dd84433ccd3aec6daa17bb0655f33af46fb3d10e4c0f45f45d3de1435
Enrichment time
2026-07-24T08:51:54Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.