SmarterMail CVE-2026-23760 Exploited for RCE via System Events

2 pointsposted 9 hours ago
by thehacknews

1 Comments

thehacknews

9 hours ago

Attackers are actively abusing a SmarterMail account takeover flaw to gain admin access and pivot into remote code execution using System Events.

The intrusion chain uses automated API calls for password reset, token-based login, event-hook creation, and domain actions to trigger command execution and cleanup.