Start your day with intelligence. Get The OODA Daily Pulse.

Home > Briefs > Cyber > Attackers Exploited WinRAR Zero-Day for Months to Steal Money from Brokers (CVE-2023-38831)

Attackers Exploited WinRAR Zero-Day for Months to Steal Money from Brokers (CVE-2023-38831)

Financially motivated attacks have exploited a zero-day vulnerability in WinRaR to trick traders into installing malware. This malware allows them to steal money from broker accounts. The attackers are able to create a modified RAR or ZIP archive containing harmless and malicious files. When these files are opened malware gets installed, which allows the attackers to gain access to the victim’s computer. Fortunately, a fix is available in the latest WinRaR update. 

Read more: https://www.helpnetsecurity.com/2023/08/23/cve-2023-38831-exploited/