thenextweb
Two Russian APT groups are exploiting a WinRAR flaw patched nearly a year ago to hit Ukraine

Two Russian state-linked hacking groups are actively exploiting a path traversal vulnerability in WinRAR that was patched nearly a year ago, using it to deploy credential-stealing malware against Ukrainian government and military targets, according to research published by Trend Micro. The flaw, tracked as CVE-2025-8088 and rated 8.4 on the CVSS scale, allows attackers to […]<br /> This story continues at The Next Web [...]

Rating

Innovation

Pricing

Technology

Usability

We have discovered similar tools to what you are looking for. Check out our suggestions for similar AI tools.

Destination
Ukraine allows allies to train AI models on its battlefield data

Ukraine's four-year war with Russia has made it the world leader in battlefield drone technology. One byproduct of that is that the data it collects has become one of the country's most valu [...]

Match Score: 70.45

Destination
Russia's recent blocking of Telegram is reportedly disrupting its military operations in Ukraine

A decision to ban Telegram on home soil may have backfired on the Kremlin. Last week, Russia went on a blocking spree, banning a number of Western apps in an effort to push domestic users towards Max, [...]

Match Score: 62.38

Destination
Russian regulators are trying to seize assets from the developers of World of Tanks

Top executives from Wargaming and Lesta Games, the joint developers of World of Tanks, could have their stakes in their respective companies seized by the Russian government, according to reports from [...]

Match Score: 61.55

Destination
The Morning After: Google gives Android its own show

Google I/O is usually where the company reveals what’s happening with its smartphone OS for the next 12 months, but this year, Android is getting its own thing. A week ahead of I/O, Google will deep [...]

Match Score: 57.06

venturebeat
Microsoft patched a Copilot Studio prompt injection. The data exfiltrated anyway.

Microsoft assigned CVE-2026-21520, a CVSS 7.5 indirect prompt injection vulnerability, to Copilot Studio. Capsule Security discovered the flaw, coordinated disclosure with Microsoft, and the patch was [...]

Match Score: 55.08

Destination
Ukraine captures a Russian position using only drones and ground robots

President Zelenskyy announces a historic first: a Russian position taken entirely by unmanned systems. A CSIS report details how AI is already changing Ukraine's battlefield and where the limits [...]

Match Score: 54.34

Destination
Dangerous new malware exploits WinRAR flaw - here's what we know

A Chinese state-sponsored actor was seen exploiting a WinRAR bug, soon after the Russians. [...]

Match Score: 54.07

venturebeat
Copilot searched your mailbox. LiteLLM handed out admin keys. Run this 5-check audit before your stack is next

Two AI tools broke in the same way in the same two weeks, and four research teams proved it. The pattern underneath every disclosure is one sentence: enterprise AI accepts external input with no trust [...]

Match Score: 51.29

venturebeat
7,000 Langflow servers are under attack. LangGraph and LangChain have the same holes

Your AI agent did exactly what it was designed to do. The framework underneath it just handed an attacker a shell on the box that holds your OpenAI key, your database credentials, and your CRM tokens. [...]

Match Score: 50.36