Wednesday, May 27, 2026
  • About Web3Wire
  • Web3Wire NFTs
  • .w3w TLD
  • $W3W Token
  • Web3Wire DAO
  • Media Network
  • RSS Feed
  • Contact Us
Web3Wire
No Result
View All Result
  • Home
  • Web3
    • Latest
    • AI
    • Business
    • Blockchain
    • Cryptocurrencies
    • Decentralized Finance
    • Metaverse
    • Non-Fungible Token
    • Press Release
  • Technology
    • Consumer Tech
    • Digital Fashion
    • Editor’s Choice
    • Guides
    • Stories
  • Coins
    • Top 10 Coins
    • Top 50 Coins
    • Top 100 Coins
    • All Coins
  • Exchanges
    • Top 10 Crypto Exchanges
    • Top 50 Crypto Exchanges
    • Top 100 Crypto Exchanges
    • All Crypto Exchanges
  • Stocks
    • Blockchain Stocks
    • NFT Stocks
    • Metaverse Stocks
    • Artificial Intelligence Stocks
  • Events
  • News
    • Latest Crypto News
    • Latest DeFi News
    • Latest Web3 News
  • Home
  • Web3
    • Latest
    • AI
    • Business
    • Blockchain
    • Cryptocurrencies
    • Decentralized Finance
    • Metaverse
    • Non-Fungible Token
    • Press Release
  • Technology
    • Consumer Tech
    • Digital Fashion
    • Editor’s Choice
    • Guides
    • Stories
  • Coins
    • Top 10 Coins
    • Top 50 Coins
    • Top 100 Coins
    • All Coins
  • Exchanges
    • Top 10 Crypto Exchanges
    • Top 50 Crypto Exchanges
    • Top 100 Crypto Exchanges
    • All Crypto Exchanges
  • Stocks
    • Blockchain Stocks
    • NFT Stocks
    • Metaverse Stocks
    • Artificial Intelligence Stocks
  • Events
  • News
    • Latest Crypto News
    • Latest DeFi News
    • Latest Web3 News
No Result
View All Result
Web3Wire
No Result
View All Result
Home Artificial Intelligence

ESET Research: Russian RomCom group exploits new vulnerability, targets companies in Europe and Canada

August 11, 2025
in Artificial Intelligence, GlobeNewswire, Web3
Reading Time: 6 mins read
5
SHARES
246
VIEWS
Share on TwitterShare on LinkedInShare on Facebook
  • If you use WinRAR or other affected components such as the Windows versions of its command line utilities, UnRAR.dll, or the portable UnRAR source code, upgrade immediately to the latest version.
  • ESET researchers have discovered a previously unknown zero-day vulnerability in WinRAR being exploited in the wild by Russia-aligned group RomCom.
  • Analysis of the exploit led to the discovery of the vulnerability, now assigned CVE-2025-8088: a path traversal vulnerability, made possible with the use of alternate data streams. After notification, WinRAR released a patched version on July 30th, 2025.
  • Successful exploitation attempts delivered various backdoors used by the RomCom group, specifically a SnipBot variant, RustyClaw, and the Mythic agent.
  • This campaign targeted financial, manufacturing, defense, and logistics companies in Europe and Canada.

BRATISLAVA, Slovakia, Aug. 11, 2025 (GLOBE NEWSWIRE) — ESET researchers have discovered a previously unknown vulnerability in WinRAR, exploited in the wild by Russia-aligned group RomCom. According to ESET telemetry, malicious archives were used in spearphishing campaigns between July 18 to July 21, 2025, targeting financial, manufacturing, defense, and logistics companies in Europe and Canada. The aim of the attacks was cyberespionage. This is at least the third time that RomCom has been caught exploiting a significant zero-day vulnerability in the wild.

“On July 18, we observed a malicious DLL named msedge.dll in a RAR archive containing unusual paths that caught our attention. Upon further analysis, we found that the attackers were exploiting a previously unknown vulnerability affecting WinRAR, including the then-current version 7.12. On July 24, we contacted the developer of WinRAR; the same day the vulnerability was fixed in beta version with a full version released few days later. We advise WinRAR users to install the latest version as soon as possible to mitigate the risk,” says ESET researcher Peter Strýček who made the discovery along with another ESET researcher Anton Cherepanov. The vulnerability, CVE-2025-8088, is a path traversal vulnerability, which is made possible via the use of alternate data streams.

Disguised as an application document, the weaponized archives exploited a path traversal flow to compromise its targets. In the spearphishing email, the attackers sent a CV hoping that a curious target would open it. According to ESET telemetry, none of the targets were compromised. The attackers, however, had conducted reconnaissance beforehand and the emails were highly targeted. Successful exploitation attempts delivered various backdoors used by RomCom group – specifically, a SnipBot variant, RustyClaw, and the Mythic agent.

ESET Research attributes the observed activities to RomCom with high confidence based on the targeted region, tactics, techniques, and procedures (TTPs), and the malware used. RomCom (also known as Storm-0978, Tropical Scorpius, or UNC2596) is a Russia-aligned group that conducts both opportunistic campaigns against selected business verticals and targeted espionage operations. The group’s focus has shifted to include espionage operations collecting intelligence, in parallel with its more conventional cybercrime operations. The backdoor used by the group is capable of executing commands and downloading additional modules to the victim’s machine. It is not the first time that RomCom has used exploits to compromise its victims. In 2023-06, the group performed a spearphishing campaign targeting defense and governmental entities in Europe, with lures related to the Ukrainian World Congress.

“By exploiting a previously unknown zero-day vulnerability in WinRAR, the RomCom group has shown that it is willing to invest serious effort and resources into its cyberoperations. The discovered campaign targeted sectors that align with the typical interests of Russian-aligned APT groups, suggesting a geopolitical motivation behind the operation,” concludes Strýček.

For a more detailed analysis and technical breakdown of RomCom’s latest campaign, check out the latest ESET Research blogpost “Update WinRAR tools now: RomCom and others exploiting zero-day vulnerability” on WeLiveSecurity.com. Make sure to follow ESET Research on Twitter (today known as X), BlueSky, and Mastodon for the latest news from ESET Research.

About ESET

ESET® provides cutting-edge cybersecurity to prevent attacks before they happen. By combining the power of AI and human expertise, ESET stays ahead of emerging global cyberthreats, both known and unknown—securing businesses, critical infrastructure, and individuals. Whether it’s endpoint, cloud, or mobile protection, our AI-native, cloud-first solutions and services remain highly effective and easy to use. ESET technology includes robust detection and response, ultra-secure encryption, and multifactor authentication. With 24/7 real-time defense and strong local support, we keep users safe and businesses running without interruption. The ever-evolving digital landscape demands a progressive approach to security: ESET is committed to world-class research and powerful threat intelligence, backed by R&D centers and a strong global partner network. For more information, visit http://www.eset.com or follow our social media, podcasts, and blogs.

About Web3Wire
Web3Wire – Information, news, press releases, events and research articles about Web3, Metaverse, Blockchain, Artificial Intelligence, Cryptocurrencies, Decentralized Finance, NFTs and Gaming.
Visit Web3Wire for Web3 News and Events, Block3Wire for the latest Blockchain news and Meta3Wire to stay updated with Metaverse News.
ShareTweet1ShareSendShare2
Previous Post

HRC WORLD PLC: Admission to Trading on the AQSE Growth Market

Next Post

Aeries Technology (AERT) Transforms HR into a Strategic Growth Engine with AI Innovation

Related Posts

Evolution Metals & Technologies Corp. Regains Compliance with Nasdaq Listing Rule Following Previously Received Notice and Filing of Quarterly Report on Form 10-Q

MIAMI, FL, May 26, 2026 (GLOBE NEWSWIRE) -- Evolution Metals & Technologies Corp. (“EM&T” or the “Company”) (Nasdaq: EMAT), a U.S.-based critical materials and advanced manufacturing company focused on building a secure, vertically integrated supply chain for rare earth permanent magnets, battery materials, and related critical technologies, today announced that...

Read moreDetails

Global Mofy AI Limited Announces Closing of $8 Million Registered Offering

BEIJING, May 26, 2026 (GLOBE NEWSWIRE) -- Global Mofy AI Limited (the “Company” or “Global Mofy”) (Nasdaq: GMM), a generative AI-driven technology solutions provider engaged in virtual content production and the development of 3D digital assets, today announced the closing of its previously announced registered direct offering (the “Offering”) of...

Read moreDetails

Pasqal and Bleichroeder Acquisition Corp. II Announce Filing of Registration Statement on Form F-4 in Connection with Proposed Business Combination

PARIS and NEW YORK, May 26, 2026 (GLOBE NEWSWIRE) -- Pasqal Holding SAS (“Pasqal”), a global leader in neutral-atom quantum computing, and Bleichroeder Acquisition Corp. II (NASDAQ: BBCQ), a special purpose acquisition company (“Bleichroeder”), today announced the public filing with the U.S. Securities and Exchange Commission (the “SEC”) of their...

Read moreDetails

Microchip Technology to Present at the TD Cowen 54th Annual Technology, Media & Telecom Conference

CHANDLER, Ariz., May 26, 2026 (GLOBE NEWSWIRE) -- (NASDAQ:MCHP) – Microchip Technology Incorporated, a leading provider of smart, connected, and secure embedded control solutions, today announced that the Company will present at the TD Cowen 54th Annual Technology, Media & Telecom Conference on Thursday, May 28, 2026 at 11:25 a.m....

Read moreDetails

AGM Group Receives Notification from Nasdaq Regarding Delayed Filing of Form 20-F

NEW YORK, May 26, 2026 (GLOBE NEWSWIRE) -- AGM Group Holdings Inc. (NASDAQ: AGMH, “AGMH” or the “Company”), an integrated technology company specializing in the assembling and sales of high-performance hardware and computing equipment, today announced that it received a notification letter dated May 18, 2026 (the "Notification Letter") from...

Read moreDetails

SPS Commerce to Present at the William Blair 46th Annual Growth Stock Conference

MINNEAPOLIS, May 26, 2026 (GLOBE NEWSWIRE) -- SPS Commerce, Inc. (NASDAQ: SPSC), the leading intelligent supply chain network, today announced that management will present at the William Blair 46th Annual Growth Stock Conference on Tuesday, June 2, 2026, at 8:40 AM C.T. A webcast of the presentation will be available...

Read moreDetails

Applied Materials Partners with SCREEN To Bring Advanced Wafer Cleaning Technologies to EPIC Center

Collaborative R&D at Applied’s EPIC Center in Silicon Valley will enable higher yields and faster commercialization of next-generation chips Partnership deepens long-standing joint development relationship to overcome process challenges in leading-edge chipmaking SANTA CLARA, Calif., May 26, 2026 (GLOBE NEWSWIRE) -- Applied Materials, Inc. (Nasdaq: AMAT), the leader in materials...

Read moreDetails

CarGurus to Present at the BofA Securities 2026 Global Technology Conference

BOSTON, May 26, 2026 (GLOBE NEWSWIRE) -- CarGurus, Inc. (Nasdaq: CARG), the No. 1 visited automotive shopping site in the U.S.1, today announced that Jason Trevisan, Chief Executive Officer, is scheduled to participate in a fireside chat at the BofA Securities 2026 Global Technology Conference on Tuesday, June 2, 2026,...

Read moreDetails

Leading Philippine Telecom Provider Selects Synchronoss to Deliver Personal Cloud Solutions to 54 Million Customers

BRIDGEWATER, N.J., May 26, 2026 (GLOBE NEWSWIRE) -- Synchronoss Technologies, Inc. (“Synchronoss”) today announced that Globe Telecom, Inc. is set to offer Synchronoss Personal Cloud™ to its more than 54 million customers. Globe operates one of the largest mobile, fixed-line, and broadband networks in the Philippines. Using Synchronoss’ white-label cloud...

Read moreDetails

Zscaler Announces Strong Third-Quarter Fiscal 2026 Results

Third Quarter Highlights Revenue grew 25% year-over-year to $850.5 million Annual Recurring Revenue (ARR) grew 25% year-over-year to $3,525 million Operating cash flow of $198.0 million, compared to $211.1 million a year ago Free cash flow of $136.0 million, compared to $119.5 million a year ago, grew 14% year-over-year SAN...

Read moreDetails
Web3Wire NFTs - The Web3 Collective

Web3Wire, $W3W Token and .w3w tld Whitepaper

Web3Wire, $W3W Token and .w3w tld Whitepaper

Claim your space in Web3 with .w3w Domain!

Web3Wire

Trending on Web3Wire

  • Top Cross-Chain DeFi Solutions to Watch by 2025

    106 shares
    Share 42 Tweet 27
  • Unifying Blockchain Ecosystems: 2024 Guide to Cross-Chain Interoperability

    168 shares
    Share 67 Tweet 42
  • Understanding Soulbound Tokens SBT Their Definition and Significance

    60 shares
    Share 24 Tweet 15
  • What is a Gold IRA? (Guide Released)

    6 shares
    Share 2 Tweet 2
  • Top Layer 1 Crypto Projects to Watch in 2025

    10 shares
    Share 4 Tweet 3
Join our Web3Wire Community!

Our newsletters are only twice a month, reaching around 10000+ Blockchain Companies, 800 Web3 VCs, 600 Blockchain Journalists and Media Houses.


* We wont pass your details on to anyone else and we hate spam as much as you do. By clicking the signup button you agree to our Terms of Use and Privacy Policy.

Web3Wire Podcasts

Upcoming Events

There are currently no events.

Latest on Web3Wire

  • Evolution Metals & Technologies Corp. Regains Compliance with Nasdaq Listing Rule Following Previously Received Notice and Filing of Quarterly Report on Form 10-Q
  • Global Mofy AI Limited Announces Closing of $8 Million Registered Offering
  • Pasqal and Bleichroeder Acquisition Corp. II Announce Filing of Registration Statement on Form F-4 in Connection with Proposed Business Combination
  • Microchip Technology to Present at the TD Cowen 54th Annual Technology, Media & Telecom Conference
  • AGM Group Receives Notification from Nasdaq Regarding Delayed Filing of Form 20-F

RSS Latest on Block3Wire

  • The Algorithmic Monographs: A Five-Volume Civil Code for the Age of Autonomous Intelligence
  • Ali Sadhik Shaik: Practitioner, Scholar, and Author – Focused on the Governance of Intelligent Systems
  • The Klyrox Protocol: A Decentralized Framework to Close the AI Accountability Gap
  • Covo Finance: Revolutionary Crypto Leverage Trading Platform
  • WorldStrides and HEX Announce Partnership to Offer High School and University Students Innovative Courses Designed to Improve Their Outlook in the Digital Age

RSS Latest on Meta3Wire

  • The Algorithmic Monographs: A Five-Volume Civil Code for the Age of Autonomous Intelligence
  • Ali Sadhik Shaik: Practitioner, Scholar, and Author – Focused on the Governance of Intelligent Systems
  • The Klyrox Protocol: A Decentralized Framework to Close the AI Accountability Gap
  • Thumbtack Honored as a 2023 Transform Awards Winner
  • Accenture Invests in Looking Glass to Accelerate Shift from 2D to 3D
Web3Wire

Web3Wire is your go-to source for the latest insights and updates in Web3, Metaverse, Blockchain, AI, Cryptocurrencies, DeFi, NFTs, and Gaming. We provide comprehensive coverage through news, press releases, event updates, and research articles, keeping you informed about the rapidly evolving digital world.

  • About Web3Wire
  • Founder’s Note
  • Web3Wire NFTs – The Web3 Collective
  • .w3w TLD
  • $W3W Token
  • Web3Wire DAO
  • Event Partners
  • Community Partners
  • Our Media Network
  • Media Kit
  • RSS Feeds
  • Contact Us

Crypto Coins

  • Top 10 Coins
  • Top 50 Coins
  • Top 100 Coins
  • All Coins – Marketcap
  • Crypto Coins Heatmap

Crypto Exchanges

  • Top 10 Exchanges
  • Top 50 Exchanges
  • Top 100 Exchanges
  • All Crypto Exchanges

Crypto Stocks

  • Blockchain Stocks
  • NFT Stocks
  • Metaverse Stocks
  • Artificial Intelligence Stocks

Web3Wire Whitepaper | Tokenomics

Web3 Resources

  • Top Web3 and Crypto Youtube Channels
  • Latest Crypto News
  • Latest DeFi News
  • Latest Web3 News

Blockchain Resources

  • Blockchain and Web3 Resources
  • Decentralized Finance (DeFi) – Research Reports
  • All Crypto Whitepapers

Metaverse Resources

  • AR VR and Metaverse Resources
  • Metaverse Courses
Claim your space in Web3 with .w3w!

The Klyrox Protocol | The Algorithmic Monographs

Top 50 Web3 Blogs and Websites
Web3Wire Podcast on Spotify Web3Wire Podcast on Amazon Music 
Web3Wire - Web3 and Blockchain - News, Events and Press Releases | Product Hunt
Web3Wire on Google News

Media Portfolio: Block3Wire | Meta3Wire

  • Privacy Policy
  • Terms of Use
  • Disclaimer
  • Sitemap
  • For Search Engines
  • Crypto Sitemap
  • Exchanges Sitemap

© 2024 Web3Wire. We strongly recommend our readers to DYOR, before investing in any cryptocurrencies, blockchain projects, or ICOs, particularly those that guarantee profits.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In

Add New Playlist

No Result
View All Result
  • Coins
    • Top 10 Cryptocurrencies
    • Top 50 Cryptocurrencies
    • Top 100 Cryptocurrencies
    • All Coins
  • Exchanges
    • Top 10 Cryptocurrency Exchanges
    • Top 50 Cryptocurrency Exchanges
    • Top 100 Cryptocurrency Exchanges
    • All Crypto Exchanges
  • Stocks
    • Blockchain Stocks
    • NFT Stocks
    • Metaverse Stocks
    • Artificial Intelligence Stocks

© 2024 Web3Wire. We strongly recommend our readers to DYOR, before investing in any cryptocurrencies, blockchain projects, or ICOs, particularly those that guarantee profits.

This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.