Roundcube webmail XSS vulnerability exploited by attackers (CVE-2023-43770)Help Net Security·Feb 15, 11:46 UTC · Feb 15, 2024Vulnerability in the wildCVE-2023-43770CVE-2020-35730CVE-2021-4402660
Russia-Linked APT28 Exploited MDaemon ZeroThe Hacker News·May 15, 00:00 UTC · May 15, 2025Threat actor in the wildCVE-2020-12641CVE-2020-35730CVE-2021-44026+3 CVEs60
Week in review: AnyDesk phishing campaign targets employees, Microsoft fixes exploited zero-daysHelp Net Security·Feb 18, 00:00 UTC · Feb 18, 2024Exploit / PoC in the wildCVE-2024-21762CVE-2024-23313CVE-2023-43770+5 CVEs160
Ukraine sees surge in AI-Powered cyberattacks by RussiaSecurity Affairs·Oct 10, 13:31 UTC · Oct 10, 2025RansomwareCVE-2023-43770CVE-2024-37383CVE-2025-49113+2 CVEs60
From Phishing to Malware: AI Becomes Russia's New Cyber Weapon in War on UkraineThe Hacker News·Oct 9, 09:10 UTC · Oct 9, 2025MalwareCVE-2023-43770CVE-2024-37383CVE-2025-49113+2 CVEs60
Russian hackers turn to AI as old tactics fail, Ukrainian CERT saysThe Record·Oct 8, 13:47 UTC · Oct 8, 2025VulnerabilityCVE-2023-4377035
Roundcube flaws allow easy email account compromise (CVE-2024-42009, CVE-2024-42008)Help Net Security·Jun 10, 06:52 UTC · Jun 10, 2025Vulnerability in the wildCVE-2024-42009CVE-2024-42008CVE-2024-42010+4 CVEs60
Russian Espionage Operation Targets Organizations Tied to Ukraine WarInfosecurity Magazine·May 16, 11:15 UTC · May 16, 2025Threat actorCVE-2024-11182CVE-2023-4377060
Spies hack high-value mail servers using an exploit from yesteryearArs Technica · Security·May 15, 00:00 UTC · May 15, 2025Exploit / PoCCVE-2023-4377060
Russia-linked hackers target webmail servers in Ukraine-related espionage operationHelp Net Security·May 15, 00:00 UTC · May 15, 2025Threat actorCVE-2023-43770CVE-2024-1118250
Russia-aligned hackers target European and Iranian embassies in new espionage campaignThe Record·Feb 17, 01:36 UTC · Feb 17, 2024Threat actor in the wildCVE-2023-4377060
Alert: CISA Warns of Active 'Roundcube' Email AttacksThe Hacker News·Feb 15, 00:00 UTC · Feb 15, 2024Advisory in the wildCVE-2023-4377060
CISA adds Roundcube Webmail Persistent XSS bug to its Known Exploited Vulnerabilities catalogSecurity Affairs·Feb 12, 18:54 UTC · Feb 12, 2024Exploit / PoC in the wildCVE-2023-43770CVE-2020-3573060