Malware & Threats APTs, Cybercriminals Widely Exploiting WinRAR Vulnerability Russian and Chinese state-sponsored threat actors have been exploiting CVE-2025-8088 since July 2025. Ionut ArghireJanuary 28, 2026
Nation-State Russian Hackers Exploited WinRAR Zero-Day in Attacks on Europe, Canada WinRAR has patched CVE-2025-8088, a zero-day exploited by Russia’s RomCom in attacks on financial, defense, manufacturing and logistics companies. Eduard KovacsAugust 11, 2025
Cybercrime Three Months After Patch, Gov-Backed Actors Exploiting WinRAR Flaw Google says it is still catching government-backed groups linked to China and Russia launching WinRAR exploits in targeted attacks. Ryan NaraineOctober 18, 2023
Cybercrime Traders Targeted by Cybercriminals in Attack Exploiting WinRAR Zero-Day A financially motivated cybercrime group has exploited a WinRAR zero-day to deliver malware to traders and steal their money. Eduard KovacsAugust 24, 2023