
TA488 Exploits CVE-2026-42897 Outlook Flaw to Deploy OWAReaper Backdoor
Threat actor TA488 has launched a new campaign exploiting CVE-2026-42897, a cross-site scripting vulnerability in Microsoft Outlook Web Access (OWA), to deploy a sophisticated JavaScript backdoor named OWAReaper. The activity was observed on July 22, 2026, shortly before Proofpoint and the NSA released reporting on the threat group. TA488 used compromised email accounts to distribute […]
The post TA488 Exploits CVE-2026-42897 Outlook Flaw to Deploy OWAReaper Backdoor appeared first on Cyber Security News.