Curated news, CVE analysis, and threat reports from the world's top cybersecurity sources.
Two separate Russia-aligned campaigns are still exploiting the WinRAR flaw CVE-2025-8088 against Ukrainian organizations nearly a year after it was patched, showing how unmanaged software keeps an exploited entry point open long after the fix ships.
Trend Micro reports that two Russia-aligned campaigns are still exploiting the WinRAR vulnerability CVE-2025-8088 against Ukrainian organizations, almost a year after it was patched. This demonstrates how unmanaged software can leave exploited entry points open long after fixes are shipped.
Two separate Russia-aligned campaigns are still exploiting the WinRAR flaw CVE-2025-8088 against Ukrainian organizations nearly a year after it was patched, showing how unmanaged software keeps an exploited entry point open long after the fix ships.
This article reports that Russia-aligned campaigns are still exploiting the WinRAR vulnerability CVE-2025-8088 against Ukrainian organizations, almost a year after a patch was released. It highlights how unmanaged software leaves exploited entry points open even after fixes are available.
Written by: Chad Reams, Tufail Ahmed, Keith Knapp, Ashley Frazer, Tyler McLellan Introduction From January through May 2026, Mandiant identified a financially motivated data theft extortion campaign executed by the threat cluster UNC3753 (also tracked as "Luna Moth," “Chatty Spider,” and "Silent...
Written by: Chad Reams, Tufail Ahmed, Keith Knapp, Ashley Frazer, Tyler McLellan Introduction From January through May 2026, Mandiant identified a financially motivated data theft extortion campaign executed by the threat cluster UNC3753 (also tracked as "Luna Moth," “Chatty Spider,” and "Silent Ransom Group") targeting dozens of organizations across professional, legal, and financial services in the United States.