Tag

#CVE-2026-42897

1 published story tagged with CVE-2026-42897.

highAPT / Nation-StateJul 29, 2026·4 min read

Laundry Bear exploits Exchange OWA zero-day to deploy persistent OWAReaper backdoor via email

The Russian state-sponsored group Laundry Bear (TA488) is using a "half-click" exploit against Microsoft Exchange Outlook Web Access (OWA) to deploy the OWAReaper backdoor.