6 hours ago
Heads up to anyone running SmarterMail (the popular Microsoft Exchange alternative).
It’s being reported today (Feb 9) that a ransomware group has successfully breached SmarterTools by leveraging a recently patched vulnerability in their deployment.
The Details:
It’s being reported today (Feb 9) that a ransomware group has successfully breached SmarterTools by leveraging a recently patched vulnerability in their deployment.
The Details:
- The Attack: Threat actors used a flaw in the "ConnectToHub" API method.
- The Result: They’ve managed to encrypt files and append the
extension to them.Code:.milkyway
- Action Needed: If you are running an on-prem version of SmarterMail, ensure you have updated to the latest build immediately.

