"WinRAR Zero-Day Exploit: Protect Your Accounts and Patch Now!"

1 min read
Source: Ars Technica
"WinRAR Zero-Day Exploit: Protect Your Accounts and Patch Now!"
Photo: Ars Technica
TL;DR Summary

A zero-day vulnerability in the popular file-compression program WinRAR has been actively exploited for four months by unknown attackers. The vulnerability allows hackers to execute malicious code when targets open booby-trapped JPGs and other innocuous files inside ZIP archives. The attackers have been using the exploit to install malware, including DarkMe, GuLoader, and Remcos RAT, and withdraw money from broker accounts. The total number of victims and financial losses is unknown, but at least 130 individuals have been compromised. WinRAR developers have released a fix for the vulnerability, and users are advised to update to version 6.23 to protect themselves.

Share this article

Reading Insights

Total Reads

0

Unique Readers

1

Time Saved

4 min

vs 5 min read

Condensed

88%

863100 words

Want the full story? Read the original article

Read on Ars Technica