International alert spotlights Russia-linked attacks on Zimbra webmail
2026-07-24T08:51:54Z•e3df188dd84433ccd3aec6daa17bb0655f33af46fb3d10e4c0f45f45d3de1435
CISA 2015Everest ransomwareLaundry BearOrigin EnergyRussia-linkedStadler RailState DepartmentZimbracyber scamsdata breachinformation sharingnation-state activityphishingransom demandvisa restrictionswebmail compromisezero-click phishing
What happened
Collection of cybersecurity news: An international alert warns that Kremlin-linked group Laundry Bear is using a zero-click phishing technique to compromise Zimbra webmail accounts worldwide, per U.S. and allied advisories. The U.S. State Department announced new visa restrictions targeting individuals tied to transnational cyber-scam operations. Australian energy supplier Origin Energy confirmed a customer data breach and is investigating the scope. Swiss train maker Stadler Rail refused a $12.3M ransom demand from the Everest ransomware actors after technical data was stolen from a supplier.
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- therecord_media
- Record identifier
- e3df188dd84433ccd3aec6daa17bb0655f33af46fb3d10e4c0f45f45d3de1435
- Enrichment time
- 2026-07-24T08:51:54Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.