← nejvýznamnější zprávy · všechny zprávy

KEV ✓ (6 z 6) · ransomware EPSS 1.00 (nejvyšší)

When Business Email Compromise Starts Rewriting Reality

Business Email Compromise (BEC) operates on a familiar playbook. Threat actors breach a mailbox, silently monitor operations, map approval chains, and ultimately exploit that access to divert funds or exfiltrate sensitive assets.This dynamic is central to our analysis as we kick off a series around Rapid7's collaborative research with Zimbra; upcoming installments will explore technical details and broader findings based within the Zimbra Collaboration Suite. Our investigation disrupted the…

Číst originál na Rapid7 →

CZ · EN/orig

Zimbra US

tg: zneužíváno tg: rozbor tp: phishing tp: podvod tp: identita

CVE v události 6

CVEhodnoceníKEVEPSS
CVE-2022-27925 7.2 3.1 · CISA-ADP KEV ✓ 0.99
CVE-2022-37042 9.8 3.1 · CISA-ADP KEV ✓ 0.92
CVE-2023-37580 6.1 3.1 · CISA-ADP KEV ✓ 0.49
CVE-2024-45519 10.0 3.1 · mitre KEV ✓ 1.00
CVE-2025-27915 5.4 3.1 · CISA-ADP KEV ✓ 0.04
CVE-2026-73570 8.9 3.1 · mitre KEV ✓ 0.12

Hodnocení z katalogů, všechna, se stupnicí CVSS a vydavatelem. Rozpad vektoru je na stránce CVE.