Four hacking groups identified using shared Chrome and Windows exploit kit

Security researchers at Proofpoint have identified a new exploit kit, dubbed BlueMoon, currently being utilized by at least four distinct hacking groups, some with suspected ties to the Chinese government. The kit leverages a chain of three vulnerabilities affecting Chromium-based browsers and various versions of Windows, including Windows 10, Server 2019, Server 2022, and Windows 11. By chaining these flaws, attackers can gain unauthorized access to install custom malware. Experts suggest the kit's rapid and widespread deployment may be an attempt to exploit the 'patch gap' between the release of Chromium updates and their integration into browsers like Chrome and Edge. Additionally, the use of AI in vulnerability discovery may be accelerating the development of such exploit chains. While the vulnerabilities have been patched as of the last 24 hours, the incident highlights the ongoing risks posed by coordinated cyber campaigns targeting critical software infrastructure.
This is a summary. Read the full article at the original source:
Ars TechnicaRelated stories
A recent analysis of Project Glasswing findings reveals a significant disparity between the volume of discovered vulnerabilities and the actual rate o…
The United States government has leveled serious accusations against several Chinese artificial intelligence companies, alleging they have engaged in…
A recent experiment conducted by a Wired contributor explored the security implications of using autonomous AI agents to probe home networks. By remov…



