Established 2026Monday, 20 July 2026
presents

The CloudySec Digest

The wires, edited.
← Front PageVulnerabilities Desk
Vulnerabilities

Diverse Threat Actors Exploiting Critical WinRAR Vulnerability CVE-2025-8088

Critical WinRAR vulnerability CVE-2025-8088 sees widespread exploitation by diverse threat actors months after July 2025 patch availability, indicating persistent patching gaps in enterprise environments.

Summary written by editorial AI · Source link below

Filed by Mandiant Blog1 min readCVE-2025-8088Read at source ↗
CVSS8.8highCVE-2025-8088

Introduction The Google Threat Intelligence Group (GTIG) has identified widespread, active exploitation of the critical vulnerability CVE-2025-8088 in WinRAR, a popular file archiver tool for Windows, to establish initial access and deliver diverse payloads. Discovered and patched in July 2025, government-backed threat actors linked to Russia and China as well as financially motivated threat actors continue to exploit this n-day across disparate operations. The consistent exploitation method, a

Continue at the source
Read the full report at Mandiant Blog

External link — opens at Mandiant Blog in a new tab.

§
Continue with

More from the Vulnerabilities Desk