
Security News
Zimbra Flaw Under Attack: Web Shells, Stolen Authentication Secrets and What to Do
CVE-2026-73570 lets an attacker run commands on a Zimbra mail server with a single email and no login. Attackers are planting web shells and collecting authentication secrets and mailbox data. Who is affected, how to check, and what to do.