logo

WinRAR zero-day exploited in espionage attacks against high-value targets

ID: c0f92f96-8b20-55ee-a369-a4bd7cf0d202

STIX ID: report--c0f92f96-8b20-55ee-a369-a4bd7cf0d202

Feed Name: WeLiveSecurity (ESET Research)

Threat Score
85/100

Date Published: 2025-08-11

Date Updated: 2026-05-01

...
...

ESET researchers disclosed that a previously unknown WinRAR zero-day (CVE-2025-8088) is being actively exploited by Russia-aligned group RomCom in spearphishing campaigns targeting financial, manufacturing, defense, and logistics organizations in Europe and Canada; the flaw enables arbitrary code execution via malicious archives and users are urged to update to WinRAR 7.13.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.