07:49
Jinse Finance reports that the developer of the file compression software WinRAR has fixed a zero-day vulnerability that allowed hackers to install malware on victims' computers, enabling them to break into cryptocurrency and stock trading accounts. On August 23, Singaporean network security company Group-IB reported a zero-day vulnerability in WinRAR processing ZIP file format.
The zero-day vulnerability, tracked as CVE-2023-38831, has been exploited for about four months, allowing hackers to install malware when victims click on files in the archive. The malware would allow hackers to compromise online cryptocurrency and stock trading accounts, the report said. Exploiting the vulnerability, attackers are able to create malicious RAR and ZIP archives that display seemingly innocuous files such as JPG images or PDF text documents. These weaponized ZIP archives were then distributed on trading forums aimed at cryptocurrency traders, offering tactics such as "best personal strategies for trading with Bitcoin."
The report confirmed that the malicious files had entered at least 8 public transaction forums, infecting at least 130 devices, but the financial losses of the victims were unknown.