SmarterTools network breached via authentication bypass attack against a single unpatched virtual machine



  • SmarterTools affected by Warlock ransomware exploiting CVE-2026-23760 in SmarterMail
  • The breach affected the office network and data center, but business applications and account data remained secure
  • The company patched a vulnerability, abandoned Windows servers and removed Active Directory to prevent a recurrence

US software company SmarterTools confirmed it was hit with ransomware, but said the attack did not affect its business applications or account data.

In a data breach notification posted on the company’s website, Chief Business Officer Derek Curtis said the company failed to update a server, which was later compromised due to a known vulnerability.



Leave a Comment

Your email address will not be published. Required fields are marked *