Tag
#shadowserver
5 stories taggedshadowserver.

Threat Intelligence
Police Hijack Sality Botnet's Own Network to Kill It Off
A four-country operation used the malware's peer-to-peer design against it, blocking infected computers from receiving fresh criminal payloads.
4 min read

Vulnerabilities
22,000 Microsoft Exchange servers still open to mailbox takeover flaw
A patched but widely ignored bug lets attackers read, send and download every user's email. Exploit code is already circulating.
3 min read

Vulnerabilities
8,300 Gitea servers still exposed to a code injection bug attackers are already using
A flaw in Gitea's diffpatch endpoint lets low-privilege users run shell commands on the server. CISA gave federal agencies three days to patch. Most operators haven't.
3 min read

Vulnerabilities
Poland's CERT warns of active attacks on critical Zimbra email flaw
CERT Polska says attackers are exploiting CVE-2026-73570 in Zimbra Collaboration Suite. Zimbra patched the bug in version 10.1.20 on July 20.
4 min read

Threat Intelligence
CrowdStrike, Google and Shadowserver Pull the Plug on GlassWorm's C2
A coordinated takedown severed every known command channel of the developer-targeting worm — for now.
2 min read