⤷ Title: WinRAR Update: Zero-Day Path Traversal Flaw (CVE-2025-8088) Actively Exploited to Deliver Malware
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 11 Aug 2025 00:07:35 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_8088 #cybersecurity #malware #Path Traversal #rce #Remote Code Execution #Vulnerability #WinRAR #zero_day
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 11 Aug 2025 00:07:35 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_8088 #cybersecurity #malware #Path Traversal #rce #Remote Code Execution #Vulnerability #WinRAR #zero_day
Daily CyberSecurity
WinRAR Update: Zero-Day Path Traversal Flaw (CVE-2025-8088) Actively Exploited to Deliver Malware
Security researchers at ESET have uncovered a zero-day path traversal vulnerability in the Windows version of WinRAR that has been actively exploited to execute arbitrary code on victims’ systems.…
⤷ Title: Hackers Exploited a New WinRAR Flaw Before It Was Patched
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 11 Aug 2025 08:31:05 +0000
════════════════════════
⌗ Tags: #Vulnerability #cybersecurity #ESET #malware #phishing #RomCom #vulnerability #Winrar
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 11 Aug 2025 08:31:05 +0000
════════════════════════
⌗ Tags: #Vulnerability #cybersecurity #ESET #malware #phishing #RomCom #vulnerability #Winrar
Penetration Testing Tools
Hackers Exploited a New WinRAR Flaw Before It Was Patched
A new WinRAR vulnerability (CVE-2025-8088) was exploited in the wild by the RomCom group before a patch was available. Users are urged to update to v7.13.
⤷ Title: WinRAR bug: Unzip Carefully — Malware’s Lurking!
════════════════════════
𐀪 Author: CtrlC3
════════════════════════
ⴵ Time: Tue, 12 Aug 2025 09:35:37 GMT
════════════════════════
⌗ Tags: #hacking #malware #infosec #winrar #cybersecurity
════════════════════════
𐀪 Author: CtrlC3
════════════════════════
ⴵ Time: Tue, 12 Aug 2025 09:35:37 GMT
════════════════════════
⌗ Tags: #hacking #malware #infosec #winrar #cybersecurity
Medium
WinRAR bug: Unzip Carefully — Malware’s Lurking!
That moment when your file archive turns out to be a digital Trojan horse? Yeah, nobody wants that. A nasty zero-day exploit targeting…
⤷ Title: WinRAR Zero-Day (CVE-2025-8088) Exploited by RomCom Hackers, ESET Warns
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 13 Aug 2025 07:47:24 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_8088 #Cyber Espionage #cybersecurity #ESET #malware #path traversal #RomCom #Winrar #zero_day
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 13 Aug 2025 07:47:24 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_8088 #Cyber Espionage #cybersecurity #ESET #malware #path traversal #RomCom #Winrar #zero_day
Penetration Testing Tools
WinRAR Zero-Day (CVE-2025-8088) Exploited by RomCom Hackers, ESET Warns
A new WinRAR zero-day vulnerability (CVE-2025-8088) is being exploited by the RomCom cyber-espionage group to deploy malware via malicious archives. Update to v7.13 now.
⤷ Title: Zero-Click WinRAR Zero-Day: CVE-2025–8088 (Path Traversal) Exploit Guide
════════════════════════
𐀪 Author: Radeonares
════════════════════════
ⴵ Time: Wed, 13 Aug 2025 19:35:23 GMT
════════════════════════
⌗ Tags: #zero_day #cybersecurity #exploit #winrar
════════════════════════
𐀪 Author: Radeonares
════════════════════════
ⴵ Time: Wed, 13 Aug 2025 19:35:23 GMT
════════════════════════
⌗ Tags: #zero_day #cybersecurity #exploit #winrar
Medium
Zero-Click WinRAR Zero-Day: CVE-2025–8088 (Path Traversal) Exploit Guide
Introduction
⤷ Title: Beyond the Inbox: How a Cyber-Espionage Group Is Exploiting Two WinRAR Vulnerabilities
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 21 Aug 2025 00:00:15 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Vulnerability Report #cyber_espionage #cybersecurity #Paper Werewolf #phishing #Vulnerability #WinRAR #zero_day
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 21 Aug 2025 00:00:15 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Vulnerability Report #cyber_espionage #cybersecurity #Paper Werewolf #phishing #Vulnerability #WinRAR #zero_day
Daily CyberSecurity
Beyond the Inbox: How a Cyber-Espionage Group Is Exploiting Two WinRAR Vulnerabilities
⤷ Title: Paper Werewolf Exploits WinRAR Zero-Day to Deliver Stealthy Malware
════════════════════════
𐀪 Author: Deven Chhajed
════════════════════════
ⴵ Time: Mon, 06 Oct 2025 03:32:11 GMT
════════════════════════
⌗ Tags: #winrar_zero_day #cybersecurity #paper_werewolf #malware_analysis #spear_phishing
════════════════════════
𐀪 Author: Deven Chhajed
════════════════════════
ⴵ Time: Mon, 06 Oct 2025 03:32:11 GMT
════════════════════════
⌗ Tags: #winrar_zero_day #cybersecurity #paper_werewolf #malware_analysis #spear_phishing
Medium
Paper Werewolf Exploits WinRAR Zero-Day to Deliver Stealthy Malware
We rarely stop to question the little tools we use every day. WinRAR, for instance — that humble program most of us keep around just to…
⤷ Title: Bitter APT Attacks China/Pakistan with WinRAR Zero-Day and New C# Backdoor via Office Macro
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 22 Oct 2025 00:11:32 +0000
════════════════════════
⌗ Tags: #Cyber Security #Bitter APT #C# Backdoor #china #cyber_espionage #Macro Attack #Pakistan #WinRAR Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 22 Oct 2025 00:11:32 +0000
════════════════════════
⌗ Tags: #Cyber Security #Bitter APT #C# Backdoor #china #cyber_espionage #Macro Attack #Pakistan #WinRAR Vulnerability
Daily CyberSecurity
Bitter APT Attacks China/Pakistan with WinRAR Zero-Day and New C# Backdoor via Office Macro
Qianxin exposed Bitter APT using a WinRAR path traversal flaw and malicious Office macros to deploy a C# backdoor against military/FinTech targets in Asia. The attack sets up scheduled persistence.
⤷ Title: Bitter APT Exploiting Old WinRAR Vulnerability in New Backdoor Attacks
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Wed, 22 Oct 2025 18:38:33 +0000
════════════════════════
⌗ Tags: #Cyber Attacks #Malware #Security #APT_Q_37 #backdoor #Bitter #China #Cyber Attack #Cybersecurity #Macros #Pakistan #South Asia #WinRAR
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Wed, 22 Oct 2025 18:38:33 +0000
════════════════════════
⌗ Tags: #Cyber Attacks #Malware #Security #APT_Q_37 #backdoor #Bitter #China #Cyber Attack #Cybersecurity #Macros #Pakistan #South Asia #WinRAR
Hackread
Bitter APT Exploiting Old WinRAR Vulnerability in New Backdoor Attacks
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: China-Nexus Autumn Dragon APT Exploits WinRAR Flaw to Deploy Telegram C2 Backdoor
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 00:00:28 +0000
════════════════════════
⌗ Tags: #Cyber Security #Autumn Dragon #China APT #cyber_espionage #DLL Sideloading #Southeast Asia #Telegram C2 #WinRAR Exploit
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 00:00:28 +0000
════════════════════════
⌗ Tags: #Cyber Security #Autumn Dragon #China APT #cyber_espionage #DLL Sideloading #Southeast Asia #Telegram C2 #WinRAR Exploit
Daily CyberSecurity
China-Nexus Autumn Dragon APT Exploits WinRAR Flaw to Deploy Telegram C2 Backdoor
CyberArmor exposed Autumn Dragon, a China-nexus APT using a WinRAR path traversal flaw (CVE-2025-8088) and DLL sideloading to deploy a Telegram C2 backdoor for espionage in Southeast Asia.
⤷ Title: CISA KEV Alert: WinRAR Zero-Day Used for Malware Injection and Windows UAF RCE Under Active Attack
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 10 Dec 2025 02:14:17 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CISA KEV #Cloud Files #CVE_2025_6218 #Directory Traversal #privilege escalation #UAF #WinRAR #zero_day
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 10 Dec 2025 02:14:17 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CISA KEV #Cloud Files #CVE_2025_6218 #Directory Traversal #privilege escalation #UAF #WinRAR #zero_day
Daily CyberSecurity
CISA KEV Alert: WinRAR Zero-Day Used for Malware Injection and Windows UAF RCE Under Active Attack
CISA added two actively exploited zero-days to the KEV: a WinRAR directory traversal (CVE-2025-6218) planting malware in Startup folder, and a Windows Cloud Files UAF for SYSTEM privileges.
⤷ Title: APT-C-53 Hits Ukraine: New Attack Exploits WinRAR Flaw for Persistence
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 10 Dec 2025 04:06:53 +0000
════════════════════════
⌗ Tags: #Cybercriminals #360 Threat Intelligence #APT_C_53 #CVE_2025_8088 #Cyber Espionage #Directory Traversal #HTA #malware #persistence #Ukraine #Winrar
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 10 Dec 2025 04:06:53 +0000
════════════════════════
⌗ Tags: #Cybercriminals #360 Threat Intelligence #APT_C_53 #CVE_2025_8088 #Cyber Espionage #Directory Traversal #HTA #malware #persistence #Ukraine #Winrar
Penetration Testing Tools
APT-C-53 Hits Ukraine: New Attack Exploits WinRAR Flaw for Persistence
APT-C-53 has once again intensified its distribution of malicious attachments targeting organizations in Ukraine. The latest wave of
⤷ Title: AI-Generated Decoys & XLL Stealth: Inside the New “EchoGather” Cyber Espionage Campaign
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 23 Dec 2025 00:18:37 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AI Phishing #backdoor #CVE_2025_8088 #cyber_espionage #EchoGather #GOFFEE #Intezer #Paper Werewolf #russia #WinRAR #XLL Malware
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 23 Dec 2025 00:18:37 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AI Phishing #backdoor #CVE_2025_8088 #cyber_espionage #EchoGather #GOFFEE #Intezer #Paper Werewolf #russia #WinRAR #XLL Malware
Daily CyberSecurity
AI-Generated Decoys & XLL Stealth: Inside the New “EchoGather” Cyber Espionage Campaign
A cyber-espionage group known for hunting Russian organizations has upgraded its arsenal, deploying malicious Excel add-ins to slip past defenses and install a new backdoor. A new report from Inte…
⤷ Title: Beyond Macros: Paper Werewolf’s “EchoGather” Backdoor Exploits Excel XLLs
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 03:28:34 +0000
════════════════════════
⌗ Tags: #Malware #APT #Cyber Espionage #EchoGather #Excel Exploits #GOFFEE #Malware 2025 #Paper Werewolf #phishing #Russia #Ukraine #WinRAR vulnerability #XLL
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 29 Dec 2025 03:28:34 +0000
════════════════════════
⌗ Tags: #Malware #APT #Cyber Espionage #EchoGather #Excel Exploits #GOFFEE #Malware 2025 #Paper Werewolf #phishing #Russia #Ukraine #WinRAR vulnerability #XLL
Penetration Testing Tools
Beyond Macros: Paper Werewolf’s "EchoGather" Backdoor Exploits Excel XLLs
The Excel format—long regarded as a harmless office staple—is increasingly being exploited as an entry point for cyberattacks.
⤷ Title: Hackers Still Using Patched WinRAR Flaw for Malware Drops, Warns Google
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Wed, 28 Jan 2026 15:49:23 +0000
════════════════════════
⌗ Tags: #Malware #Security #backdoor #Carpathian #Cybersecurity #Google #GTIG #Poison Ivy #RomCom #Russia #Stockstay #Vulnerability #WinRAR
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Wed, 28 Jan 2026 15:49:23 +0000
════════════════════════
⌗ Tags: #Malware #Security #backdoor #Carpathian #Cybersecurity #Google #GTIG #Poison Ivy #RomCom #Russia #Stockstay #Vulnerability #WinRAR
Hackread
Hackers Still Using Patched WinRAR Flaw for Malware Drops, Warns Google
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: The Persistence of WinRAR: Google Warns of Widespread CVE-2025-8088 Attacks
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 29 Jan 2026 04:15:22 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Vulnerability #Ads #CVE_2025_8088 #Google Threat Intelligence #InfoSec 2026 #path traversal #phishing #RomCom #Sandworm #Startup Persistence #Winrar
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 29 Jan 2026 04:15:22 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Vulnerability #Ads #CVE_2025_8088 #Google Threat Intelligence #InfoSec 2026 #path traversal #phishing #RomCom #Sandworm #Startup Persistence #Winrar
Penetration Testing Tools
The Persistence of WinRAR: Google Warns of Widespread CVE-2025-8088 Attacks
The Google Threat Intelligence Group (GTIG) has disclosed the extensive exploitation of a critical vulnerability, designated CVE-2025-8088, residing