Security News Russian Hackers Exploit Microsoft OWA Flaw to Keep Mailbox Access After Credential Rotation TheHackerNews Daniel Bender 30 Jul 2026 Share Russian hackers exploit CVE-2026-42897 in OWA to deploy OWAReaper, a browser implant that persists through credential rotation and device re-imaging.