CVE Tools

Сразу четыре хак-группы пользуются эксплоит-китом BlueMoon

Хакер (xakep.ru)By Мария Нефёдова

Reported exploitedGoogle ChromeTA412Windows ALPC

Our summary

Proofpoint found that at least four espionage groups, most linked to China, have rapidly adopted the BlueMoon exploit kit. The chain exploits Chrome V8 flaws CVE-2026-85046 and CVE-2026-87491 for code execution and sandbox escape, then uses Windows ALPC elevation-of-privilege flaw CVE-2026-85880. Successful attacks inject code into Chrome’s parent process and can download and execute a payload, highlighting the risk to systems that remain unpatched during the gap between source-code fixes and browser releases.

Read at Хакер (xakep.ru)

Хакер (xakep.ru) publishes this story on its own site; we link to it rather than reprint it.

Worried this affects your company?

Discuss a security assessment of your internet-facing systems. Scope agreed before testing.

Check my exposure

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store