New Hacking Campaign Exploits Microsoft Windows WinRAR Vulnerability
ID: 91234655-dd9a-5795-b2ef-8f980b0f55b7
STIX ID: report--91234655-dd9a-5795-b2ef-8f980b0f55b7
Feed Name: Infosecurity Magazine (News)
Threat Score
Check Point researchers observed a targeted cyber-espionage campaign (Amaranth-Dragon) rapidly weaponizing CVE-2025-8088 — a WinRAR path-traversal vulnerability — to deliver malicious archives via tailored phishing lures to government and law enforcement victims in Southeast Asia; attackers used legitimate cloud hosting, geo-restricted infrastructure, and the Havoc C2 framework to maintain stealth and persistence.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
