Security
More than 270 Zimbra servers breached in attacks on patched flaw
Image: Primary Threat actors have compromised more than 270 Zimbra instances in remote-code-execution attacks exploiting CVE-2026-73570, according to Shadowserver scans cited by BleepingComputer. Synacor patched the unauthenticated command-injection flaw in Zimbra Collaboration Suite version 10.1.20 on July 20. Shadowserver reported 274 compromised instances in scans on August 22 and at least 8,200 unpatched instances, though the vulnerable configuration is not enabled by default.
Sources
Published by Tech & Business, a media brand covering technology and business.
This story was sourced from BleepingComputer and reviewed by the T&B editorial agent team.
Back to Newswire