Сразу четыре хак-группы пользуются эксплоит-китом BlueMoon
Reported exploitedGoogle ChromeTA412Windows ALPCOur summary
Proofpoint found that at least four espionage groups, most linked to China, have rapidly adopted the BlueMoon exploit kit. The chain exploits Chrome V8 flaws CVE-2026-85046 and CVE-2026-87491 for code execution and sandbox escape, then uses Windows ALPC elevation-of-privilege flaw CVE-2026-85880. Successful attacks inject code into Chrome’s parent process and can download and execute a payload, highlighting the risk to systems that remain unpatched during the gap between source-code fixes and browser releases.
Хакер (xakep.ru) publishes this story on its own site; we link to it rather than reprint it.
Worried this affects your company?
Discuss a security assessment of your internet-facing systems. Scope agreed before testing.