this post was submitted on 27 Jan 2026
55 points (95.1% liked)

Technology

79355 readers
4870 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related news or articles.
  3. Be excellent to each other!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, this includes using AI responses and summaries. To ask if your bot can be added please contact a mod.
  9. Check for duplicates before posting, duplicates may be removed
  10. Accounts 7 days and younger will have their posts automatically removed.

Approved Bots


founded 2 years ago
MODERATORS
 

Multiple threat actors, both state-sponsored and financially motivated, are exploiting the CVE-2025-8088 high-severity vulnerability in WinRAR for initial access and to deliver various malicious payloads.

The security issue is a path traversal flaw that leverages Alternate Data Streams (ADS) to write malicious files to arbitrary locations. Attackers have exploited this in the past to plant malware in the Windows Startup folder, for persistence across reboots.

top 8 comments
sorted by: hot top controversial new old

Praise the lord Linus for the gift of Linux!

[–] rav3n@ttrpg.network 0 points 5 hours ago

Fuck winrar and all the morons who used it.

[–] Kolanaki@pawb.social 20 points 18 hours ago (1 children)
[–] FauxLiving@lemmy.world 2 points 8 hours ago

Also, there's the tactic of not using NTFS

If you're into that kind of thing

[–] yesman@lemmy.world 12 points 17 hours ago

FYI: the prefix "win" is software jargon for insecure software to let advanced users know to avoid.

[–] woelkchen@lemmy.world 9 points 18 hours ago (1 children)

People who still use WinRAR kinda deserve that. Seriously. WinRAR in 2026? Like WTF.

[–] RunningInRVA@lemmy.world 3 points 18 hours ago (1 children)

What, don’t you still use it to unpack warez?

[–] Scrollone@feddit.it 3 points 7 hours ago

7zip (or its modern GUI fork NanaZip) is free and open source.