This is a heavily interactive web application, and JavaScript is required. Simple HTML interfaces are possible, but that is not what this is.
Post
Suriq - Always on Watch
suriq.io
did:plc:6vjp7fbgz5ductueireifliv
🔴 EXPLOITED
Russian group Void Blizzard exploited a Zimbra webmail zero-day (CVE-2025-66376) to read months of email.
Patched Nov 2025, unpatched servers still hit.
A reset won't evict it: the payload mints app passwords that skip 2FA.
https://suriq.io/blog/zimbra-cve-2025-66376-russian-mail-theft
2026-07-23T19:16:05.171Z