The article describes CVE-2025-8088, a high-severity vulnerability (CVSS 8.8) actively exploited as a stealer targeting Ukraine, though the specific attack vector is not detailed. According to NVD data, affected versions are rarlab WinRAR prior to 7.13 and dtSearch Engine prior to 2023.01. The fixed versions are WinRAR 7.13 and dtSearch 2023.01.
2026-07-22 (Back to Inventory) Beyond the Archive: CVE-2025-8088 Stealer Targeting Ukraine Author(s): Nguyen Dang Hung Organization: bluecyber win.giftedcrook Open article directly Open article on Archive.org Related Articles 2026-05-27 ⋅ bluecyber ⋅ Nigmaz MUSTANG PANDA x PLUGX - Analysis of the January 2026 sample: a multi-layer execution chain PlugX 2026-04-23 ⋅ bluecyber ⋅ Son Vu MUSTANG PANDA × PLUGX - From deceptive LNK to multi-transport backdoor PlugX 2025-12-27 ⋅ bluecyber ⋅ Nigmaz APT Earth Baxia - Charon Ransomware: An In-Depth Analysis Charon