Russian Attackers Weaponize WinRAR Flaw Against Ukraine

Russia-aligned threat actors are actively exploiting a patched WinRAR vulnerability, CVE-2025-8088, to conduct cyber espionage and credential theft against Ukrainian government and military organizations. Because WinRAR lacks native auto-update features, many unpatched systems remain vulnerable to these phishing-based attacks that leverage malicious archives to execute arbitrary code.

Edward Kiledjian @ekiledjian