On the StrongPity Waterhole Attacks Targeting Italian and Belgian Encryption UsersKaspersky Securelist·Oct 3, 23:40 UTC · Oct 3, 2016Exploit / PoC60
WinRAR Zero-Day Under Active ExploitationThe Hacker News·Aug 15, 00:00 UTC · Aug 15, 2025Exploit / PoC in the wildCVE-2025-8088CVE-2023-38831CVE-2025-6218+2 CVEs60
Latest WinRAR Flaw Being Exploited in the Wild to Hack Windows ComputersThe Hacker News·Feb 26, 13:45 UTC · Feb 26, 2019Exploit / PoC in the wildCVE-2018-2025060
Recently fixed WinRAR bug actively exploited in the wildSecurity Affairs·Mar 15, 14:00 UTC · Mar 15, 2019Exploit / PoC in the wildCVE-2018-2025060
August 2025 CVE LandscapeRecorded Future·Nov 21, 00:00 UTC · Nov 21, 2025Ransomware in the wildCVE-2025-8088CVE-2025-7775CVE-2025-57819+5 CVEs60
WinRAR zero-day was exploited by two threat actors (CVE-2025-8088)Help Net Security·Nov 19, 15:20 UTC · Nov 19, 2025Exploit / PoCCVE-2025-8088CVE-2025-5518860
APT group UAC-0099 targets Ukraine exploiting WinRAR flawSecurity Affairs·Dec 25, 22:06 UTC · Dec 25, 2023Threat actorCVE-2023-3883160
Patched WinRAR Bug Still Under Active Attack—Thanks to No AutoThe Hacker News·Mar 15, 00:00 UTC · Mar 15, 2019Vulnerability in the wildCVE-2018-2025060
Nation-state and criminal actors leverage WinRAR flaw in attacksSecurity Affairs·Jan 29, 10:53 UTC · Jan 29, 2026Threat actor in the wildCVE-2025-808860
A flaw in WinRAR could lead to remote code executionSecurity Affairs·Oct 21, 20:10 UTC · Oct 21, 2021VulnerabilityCVE-2021-3505260
Critical bug in WINRAR affects all versions released in the last 19 yearsSecurity Affairs·Feb 23, 16:13 UTC · Feb 23, 2019Exploit / PoC60
Latest WinRAR, Drupal flaws under active exploitationHelp Net Security·Feb 26, 00:00 UTC · Feb 26, 2019Exploit / PoC in the wildCVE-2018-20250CVE-2019-634060
High-severity WinRAR 0Ars Technica · Security·Aug 12, 00:13 UTC · Aug 12, 2025Exploit / PoC in the wildCVE-2025-8088CVE-2025-621860
Two groups exploit WinRAR flaws in separate cyberThe Record·Aug 11, 16:23 UTC · Aug 11, 2025Exploit / PoCCVE-2025-8088CVE-2025-621860
WinRAR zero-day exploited by RomCom hackers in targeted attacksHelp Net Security·Aug 11, 00:00 UTC · Aug 11, 2025Exploit / PoC in the wildCVE-2025-808860
500 million WinRAR users open to compromise via a 19-year-old flawHelp Net Security·Dec 14, 14:20 UTC · Dec 14, 2023Exploit / PoC60
APT29 group exploited WinRAR 0day in attacks against embassiesSecurity Affairs·Nov 20, 13:44 UTC · Nov 20, 2023Threat actorCVE-2023-3883160
Multiple APT groups exploited WinRAR flaw CVE-2023Security Affairs·Oct 19, 07:14 UTC · Oct 19, 2023Threat actorCVE-2023-3883160
WinRAR vulnerable to remote code execution, patch now! (CVE-2023-40477)Help Net Security·Aug 21, 00:00 UTC · Aug 21, 2023VulnerabilityCVE-2023-40477CVE-2018-2025060
Google Warns of Active Exploitation of WinRAR Vulnerability CVE-2025The Hacker News·Jan 29, 06:06 UTC · Jan 29, 2026Vulnerability in the wildCVE-2025-8088CVE-2025-621860
WinRAR vulnerability still a go-to tool for hackers, Mandiant warnsHelp Net Security·Jan 28, 00:00 UTC · Jan 28, 2026Vulnerability in the wildCVE-2025-808860
U.S. CISA adds Microsoft Windows and WinRAR flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Dec 10, 09:42 UTC · Dec 10, 2025Exploit / PoC in the wildCVE-2025-6218CVE-2025-62221160
U.S. CISA adds Microsoft Internet Explorer, Microsoft Office Excel, and WinRAR flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Aug 14, 00:12 UTC · Aug 14, 2025Exploit / PoC in the wildCVE-2013-3893CVE-2007-0671CVE-2025-808860
⚡ Weekly Recap: BadCam Attack, WinRAR 0-Day, EDR Killer, NVIDIA Flaws, Ransomware Attacks & MoreThe Hacker News·Aug 12, 04:40 UTC · Aug 12, 2025Ransomware in the wildCVE-2025-54948CVE-2025-54987CVE-2025-8088+30 CVEs60
Fake WinRAR PoC spread VenomRAT malwareHelp Net Security·Sep 21, 00:00 UTC · Sep 21, 2023Exploit / PoCCVE-2023-4047CVE-2023-25157CVE-2023-4047760
Week in review: Security Onion 2.4 released, WinRAR vulnerable to RCEHelp Net Security·Aug 27, 00:00 UTC · Aug 27, 2023VulnerabilityCVE-2022-47966CVE-2023-40477CVE-2023-36844+5 CVEs160
WinRAR 0-day that uses poisoned JPG and TXT files under exploit since AprilArs Technica · Security·Aug 23, 19:34 UTC · Aug 23, 2023Exploit / PoC in the wildCVE-2023-38831CVE-2018-2025060
New Memento ransomware uses password-protected WinRAR archives to block access to the filesSecurity Affairs·Nov 22, 10:04 UTC · Nov 22, 2021RansomwareCVE-2021-2197260
Warning: WinRAR Vulnerability CVE-2025-6218 Under Active Attack by Multiple Threat GroupsThe Hacker News·Dec 15, 00:00 UTC · Dec 15, 2025Vulnerability in the wildCVE-2025-6218CVE-2025-808860
New WinRAR ZeroInfosecurity Magazine·Aug 11, 16:00 UTC · Aug 11, 2025Exploit / PoC in the wildCVE-2025-8088CVE-2023-36884CVE-2024-968060
DarkCasino joins the list of APT groups exploiting WinRAR 0daySecurity Affairs·Nov 20, 09:09 UTC · Nov 20, 2023Threat actorCVE-2023-3883160
Google TAG Detects State-Backed Threat Actors Exploiting WinRAR FlawThe Hacker News·Oct 19, 06:38 UTC · Oct 19, 2023Threat actor in the wildCVE-2023-3883160
Russian hackers offered phony drone training to exploit WinRAR vulnerabilityCyberScoop·Oct 18, 15:40 UTC · Oct 18, 2023Vulnerability in the wild60
Attackers exploited WinRAR zero-day for months to steal money from brokers (CVE-2023-38831)Help Net Security·Oct 18, 08:32 UTC · Oct 18, 2023Exploit / PoCCVE-2023-38831CVE-2023-4047760
State-sponsored APTs are leveraging WinRAR bugHelp Net Security·Oct 18, 00:00 UTC · Oct 18, 2023Threat actorCVE-2023-38831CVE-2023-4047760
Bug in Popular WinRAR Software Could Let Attackers Hack Your ComputerThe Hacker News·Oct 22, 06:33 UTC · Oct 22, 2021VulnerabilityCVE-2021-3505260
New Hacking Campaign Exploits Microsoft Windows WinRAR VulnerabilityInfosecurity Magazine·Feb 5, 11:50 UTC · Feb 5, 2026VulnerabilityCVE-2025-808860
Phishing attacks exploit WinRAR flaw CVE-2025Security Affairs·Aug 9, 07:05 UTC · Aug 9, 2025Phishing & fraud in the wildCVE-2025-808860
Pro-Russian Hackers Exploiting Recent WinRAR Vulnerability in New CampaignThe Hacker News·Nov 18, 05:56 UTC · Nov 18, 2023VulnerabilityCVE-2023-3883160