logo

New Hacking Campaign Exploits Microsoft Windows WinRAR Vulnerability

ID: 91234655-dd9a-5795-b2ef-8f980b0f55b7

STIX ID: report--91234655-dd9a-5795-b2ef-8f980b0f55b7

Feed Name: Infosecurity Magazine (News)

Threat Score
86/100

Date Published: 2026-02-05

Date Updated: 2026-04-22

...
...

Check Point researchers observed a targeted cyber-espionage campaign (Amaranth-Dragon) rapidly weaponizing CVE-2025-8088 — a WinRAR path-traversal vulnerability — to deliver malicious archives via tailored phishing lures to government and law enforcement victims in Southeast Asia; attackers used legitimate cloud hosting, geo-restricted infrastructure, and the Havoc C2 framework to maintain stealth and persistence.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.