SmarterTools Network Breached Using Authentication Bypass Attack Against Single Unpatched Virtual Machine


  • SmarterTools affected by Warlock ransomware exploiting CVE-2026-23760 in SmarterMail
  • The breach affected the office network and data center, but business applications and account data remained secure
  • The company fixed the vulnerability, abandoned Windows servers and abandoned Active Directory to prevent recurrence.

US software company SmarterTools confirmed it was the victim of ransomware, but said the attack did not affect its business applications or account data.

In a data breach notification posted on the company’s website, chief commercial officer Derek Curtis said the company failed to update a server, which was later compromised by a known vulnerability.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top