Russian Hackers Exploit Exchange Flaw for Mailbox Takeover Without a Click30. July 2026CybersecurityAn Exchange vulnerability (CVE-2026-42897) enables TA488 to achieve mailbox takeover merely by viewing emails, establishes server-level persistence, and evades conventional detection methods. Share on:
TA488 Deploys Unknown OWAReaper Backdoor Against Mail Servers30. July 2026CybersecurityTA488 infects mailboxes with OWAReaper via CVE-2026-42897 in Outlook Web Access through incidental email opening and secures persistent access via browser local storage and stolen OAuth tokens. Share on: