
(IN BRIEF) ESET has discovered CVE-2025-8088, a zero-day path traversal vulnerability in WinRAR exploited by the Russia-aligned RomCom group in targeted spearphishing campaigns against organizations in Europe and Canada. The flaw, patched on July 30, 2025, was used to deliver … Read the full press release