CyberSecurityBoardThreat Intel · CVEs · Products
Critical CVEs

CVE-2025-8088: WinRAR Flaw Exploited by Gamaredon

June 26, 2026

A now-patched flaw in WinRAR (CVE-2025-8088) was weaponized by Gamaredon to place malicious HTA downloaders into the Windows Startup folder, enabling automatic execution on next login for persistence.