05:07
PANews news on August 25, according to Cointelegraph, the developer of the file compression software WinRAR has fixed a zero-day vulnerability "CVE-2023-38831", and it has been exploited for about four months. onto the victim's computer, allowing them to hack into their cryptocurrency and stock trading accounts.
Exploiting the vulnerability, attackers are able to create malicious RAR and ZIP archives, such as JPG images or PDF text documents. The virus-laden ZIP archive was then distributed on trading forums aimed at crypto traders, offering strategies such as "Best personal strategies for Bitcoin trading." When executed, the script launches a self-extracting (SFX) archive that infects the targeted computer with various malware viruses such as DarkMe, GuLoader, and Remcos RAT. The report confirmed that the malicious files had entered at least 8 public transaction forums, infecting at least 130 devices, but the financial losses of the victims were unknown.
- 1

