Skip to Content

The file "moscow.rar" is associated with targeted phishing campaigns conducted by —specifically the group RomCom (also known as Storm-0978) . This malicious archive was used in mid-2025 to exploit a critical zero-day vulnerability in WinRAR.

❗ It is designed to silently drop malware onto your system even if you only preview the archive. Technical Overview: CVE-2025-8088

The core of the attack relies on , a high-severity path traversal vulnerability. WinRAR vulnerability exploited by two different groups

Author Profile Photo

Shannon Brady

Shannon Brady is a Local Alert Meteorologist with KTVZ News. Learn more about Shannon here.

BE PART OF THE CONVERSATION

KTVZ is committed to providing a forum for civil and constructive conversation.

Please keep your comments respectful and relevant. You can review our Community Guidelines by clicking here

If you would like to share a story idea, please submit it here.