June 10, 2026

Two Russian APT groups are exploiting a WinRAR flaw patched nearly a year ago to hit Ukraine

a computer monitor and a laptop on a desk
Tai Bui / Unsplash

Two Russian state-linked hacking groups are actively exploiting a path traversal vulnerability in WinRAR that was patched nearly a year ago, using it to deploy credential-stealing malware against Ukrainian government and military targets, according t...