Flawed 7-Zip compression tool opens systems to hack.Update it nowSecurity Affairs·May 12, 14:43 UTC · May 12, 2016VulnerabilityCVE-2016-2335CVE-2016-233435
Public PoC exploit for 7-Zip vulnerability is available (CVE-2025-11001)Help Net Security·Nov 21, 13:56 UTC · Nov 21, 2025Exploit / PoC in the wildCVE-2025-11001CVE-2025-11002CVE-2025-5518860
New 7-Zip Vulnerability Could Let Crafted XZ Archives Run Code During ExtractionThe Hacker News·Jul 20, 09:10 UTC · Jul 20, 2026VulnerabilityCVE-2026-14266CVE-2026-4809560
Fake VPN and 7-Zip Apps Turn Victims Into Residential Proxy NodesSecurity Affairs·Jul 9, 08:29 UTC · Jul 9, 2026Malware42
A 7-Zip bug allows to bypass the Mark of the Web (MotW) featureSecurity Affairs·Jan 22, 08:15 UTC · Jan 22, 2025VulnerabilityCVE-2025-041135
An X user claimed a 7-Zip zero-day vulnerability, but 7Security Affairs·Dec 31, 00:09 UTC · Dec 31, 2024Exploit / PoC60
Russian cybercrooks exploiting 7-Zip zero-day vulnerability (CVE-2025-0411)Help Net Security·Nov 19, 15:20 UTC · Nov 19, 2025Exploit / PoCCVE-2025-041160
Fake 7-Zip Installers Turn Devices Into Residential Proxy NodesThe Hacker News·Jul 12, 15:41 UTC · Jul 12, 2026Malware30
7-Zip RCE flaw (CVE-2025-11001) actively exploited in attacks in the wildSecurity Affairs·Nov 19, 19:23 UTC · Nov 19, 2025Exploit / PoC in the wildCVE-2025-1100160
Critical 7-Zip Flaw Allows Code Execution by Opening Crafted XZSecurity Affairs·Jul 20, 10:58 UTC · Jul 20, 2026Vulnerability in the wildCVE-2025-1100160
Trojanized 7-Zip downloads turn home computers into proxy nodesHelp Net Security·Feb 10, 00:00 UTC · Feb 10, 2026Malware30
NHS Warns of PoC Exploit for 7-Zip Symbolic LinkThe Hacker News·Nov 21, 06:44 UTC · Nov 21, 2025Exploit / PoC in the wildCVE-2025-11001CVE-2025-1100260
Russian Cybercrime Groups Exploiting 7-Zip Flaw to Bypass Windows MotW ProtectionsThe Hacker News·Feb 6, 03:48 UTC · Feb 6, 2025Exploit / PoC in the wildCVE-2025-041160
7-Zip 0-day was exploited in Russia’s ongoing invasion of UkraineArs Technica · Security·Feb 5, 21:05 UTC · Feb 5, 2025Exploit / PoC in the wildCVE-2025-041160
Week in review: Exploited 7-Zip 0-day flaw, crypto-stealing malware found on App Store, Google PlayHelp Net Security·Feb 9, 00:00 UTC · Feb 9, 2025MalwareCVE-2025-0411CVE-2025-25181CVE-2024-57968+1 CVEs60
GrayAlpha Unmasked: New FIN7-Linked Infrastructure, PowerNet Loader, and Fake Update AttacksRecorded Future·Jul 4, 00:00 UTC · Jul 4, 2024Malware55
Prometei botnet improves modules and exhibits new capabilities in recent updatesCisco Talos·Mar 9, 13:02 UTC · Mar 9, 2023MalwareCVE-2019-0708147
ModernLoader delivers multiple stealers, cryptominers and RATsCisco Talos·Sep 1, 17:35 UTC · Sep 1, 2022Malware30
The Poisoned ArchivesCisco Talos·Jun 21, 14:36 UTC · Jun 21, 2016VulnerabilityCVE-2016-4300CVE-2016-4301CVE-2016-430235
WinRAR zero-day was exploited by two threat actors (CVE-2025-8088)Help Net Security·Nov 19, 15:20 UTC · Nov 19, 2025Exploit / PoCCVE-2025-8088CVE-2025-5518860
On the sixth day of Christmas, an X account gave to me: a fake 7The Record·Dec 30, 18:55 UTC · Dec 30, 2024Exploit / PoC60
Week in review: Exploited newly patched BeyondTrust RCE, United Airlines CISO on building resilienceHelp Net Security·Feb 15, 00:00 UTC · Feb 15, 2026Vulnerability in the wildCVE-2026-1731CVE-2024-12356CVE-2026-1281+2 CVEs60
New wave of targeted attacks of the Angry Likho APT on Russian organizationsKaspersky Securelist·Feb 21, 10:00 UTC · Feb 21, 2025Malware42
Threat actor abuses Gophish to deliver new PowerRAT and DCRATCisco Talos·Oct 22, 10:00 UTC · Oct 22, 2024Malware30
Magnat campaigns use malvertising to deliver information stealer, backdoor and malicious Chrome extensionCisco Talos·Dec 2, 12:48 UTC · Dec 2, 2021Malware42
WinRAR Zero-Day Under Active ExploitationThe Hacker News·Aug 15, 00:00 UTC · Aug 15, 2025Exploit / PoC in the wildCVE-2025-8088CVE-2023-38831CVE-2025-6218+2 CVEs60
SmokeLoader malware aimed at multiple Ukrainian industries, using bug in file archiverThe Record·Feb 5, 18:03 UTC · Feb 5, 2025Malware in the wildCVE-2025-041160
Customizable Elpaco ransomware abuses the Everything libraryKaspersky Securelist·Nov 26, 10:00 UTC · Nov 26, 2024RansomwareCVE-2020-147260
Highlighting TA866/Asylum Ambuscade Activity Since 2021Cisco Talos·Oct 23, 10:02 UTC · Oct 23, 2024Malware42