{"id":5719,"date":"2025-08-18T03:16:14","date_gmt":"2025-08-18T03:16:14","guid":{"rendered":"https:\/\/techtrendfeed.com\/?p=5719"},"modified":"2025-08-18T03:16:14","modified_gmt":"2025-08-18T03:16:14","slug":"winrar-zero-day-exploited-in-espionage-assaults-towards-high-value-targets","status":"publish","type":"post","link":"https:\/\/techtrendfeed.com\/?p=5719","title":{"rendered":"WinRAR zero-day exploited in espionage assaults towards high-value targets"},"content":{"rendered":"<p> <br \/>\n<\/p>\n<div>\n<p class=\"sub-title\">The assaults used spearphishing campaigns to focus on monetary, manufacturing, protection, and logistics corporations in Europe and Canada, ESET analysis finds<\/p>\n<div class=\"article-authors d-flex flex-wrap\">\n<div class=\"article-author d-flex\"><a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/www.welivesecurity.com\/en\/our-experts\/editor\/\" title=\"Editor\"><picture><source srcset=\"https:\/\/web-assets.esetstatic.com\/tn\/-x45\/wls\/2013\/12\/pen-tip-200.png\" media=\"(max-width: 768px)\"\/><img decoding=\"async\" class=\"author-image me-3\" src=\"https:\/\/web-assets.esetstatic.com\/tn\/-x45\/wls\/2013\/12\/pen-tip-200.png\" alt=\"Editor\"\/><\/picture><\/a><\/div>\n<\/div>\n<p class=\"article-info mb-5\">\n        <span>11 Aug 2025<\/span>\n    <\/p>\n<\/div>\n<div>\n<p>ESET researchers have uncovered a beforehand unknown vulnerability in WinRAR, actively being exploited by Russia-aligned group RomCom. Tracked as <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2025-8088\">CVE-2025-8088<\/a>, the trail traversal flaw impacts WinRAR&#8217;s Home windows model and lets menace actors execute arbitrary code by crafting malicious archive information. This marks at the very least the third time RomCom has leveraged a big zero-day bug to conduct its operations, which underscores the group\u2019s willingness to take a position critical sources into its campaigns.<\/p>\n<p>In the meantime, in the event you use WinRAR, you must replace to the software&#8217;s newest model (<a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/www.win-rar.com\/singlenewsview.html?&amp;L=0&amp;tx_ttnews%5Btt_news%5D=283&amp;cHash=a64b4a8f662d3639dec8d65f47bc93c5\">model 7.13<\/a>) as quickly as attainable, if you have not already.<\/p>\n<p>What else is there to know in regards to the assaults? Discover out within the video from ESET Chief Safety Evangelist <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/www.welivesecurity.com\/en\/our-experts\/tony-anscombe\/\">Tony Anscombe<\/a> and ensure to learn <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/www.welivesecurity.com\/en\/eset-research\/update-winrar-tools-now-romcom-and-others-exploiting-zero-day-vulnerability\/\">the blogpost<\/a>, too!<\/p>\n<p><iframe class=\"embed-video\" title=\"\" src=\"https:\/\/www.youtube-nocookie.com\/embed\/bTXIg7xsQn8\"><\/iframe><\/p>\n<blockquote>\n<p>Join with us on\u00a0<a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/www.facebook.com\/eset\">Fb<\/a>, <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/x.com\/ESET\" target=\"_blank\" rel=\"noopener\">X<\/a>,\u00a0<a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/www.linkedin.com\/company\/eset\/\">LinkedIn<\/a>\u00a0and\u00a0<a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/www.instagram.com\/eset\/\">Instagram<\/a>.<\/p>\n<\/blockquote>\n<\/div>\n<p><template id="WdBKubobF7nm3N2WeZJo"></template><\/script><br \/>\n<br \/><\/p>\n","protected":false},"excerpt":{"rendered":"<p>The assaults used spearphishing campaigns to focus on monetary, manufacturing, protection, and logistics corporations in Europe and Canada, ESET analysis finds 11 Aug 2025 ESET researchers have uncovered a beforehand unknown vulnerability in WinRAR, actively being exploited by Russia-aligned group RomCom. Tracked as CVE-2025-8088, the trail traversal flaw impacts WinRAR&#8217;s Home windows model and lets [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":5721,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[58],"tags":[145,852,1994,2540,303,4772,4218],"class_list":["post-5719","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cybersecurity","tag-attacks","tag-espionage","tag-exploited","tag-highvalue","tag-targets","tag-winrar","tag-zeroday"],"_links":{"self":[{"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=\/wp\/v2\/posts\/5719","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=5719"}],"version-history":[{"count":1,"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=\/wp\/v2\/posts\/5719\/revisions"}],"predecessor-version":[{"id":5720,"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=\/wp\/v2\/posts\/5719\/revisions\/5720"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=\/wp\/v2\/media\/5721"}],"wp:attachment":[{"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=5719"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=5719"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=5719"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}<!-- This website is optimized by Airlift. Learn more: https://airlift.net. Template:. Learn more: https://airlift.net. Template: 69d9690a190636c2e0989534. Config Timestamp: 2026-04-10 21:18:02 UTC, Cached Timestamp: 2026-08-06 04:55:00 UTC -->