China-Linked Hackers Exploit Chrome-Windows Zero-Day Chain to Deploy GRIMWEDGE
Élevé · The Hacker News ·
Exploité
Ce qui s'est passé
China-linked group UTA0560 used spear-phishing to exploit recently patched Chrome and Windows flaws, delivering the GRIMWEDGE JavaScript backdoor to NGOs from September 1, 2026.
À faire maintenant
Patch Chrome and Windows immediately and enforce auto-updates. Block suspicious attachments and links, require phishing-resistant MFA, and hunt endpoints for GRIMWEDGE indicators. Verify CVE details and IOCs with the vendor advisory.
Source originale
Analyse assistée par IA, sources citées. Vérifiez auprès de l'avis du fournisseur avant d'agir.