Multiple hacking groups found using the same Chrome malware in the same week — so what does it mean?

https://cdn.mos.cms.futurecdn.net/tSejjmrgK46MgdhWqD5miC-2000-80.jpg
  • Proofpoint detailed BlueMoon, an exploit kit chaining two Chromium flaws and one Windows bug
  • Four groups, including China‑aligned TA412, used it loudly against NGOs, aerospace, and manufacturing targets
  • Exploits were “patch‑gap” zero‑days; all flaws now patched

Four hacking groups, including some tied to the Chinese government, were seen using the exact same exploit kit in a span of a week, suggesting a certain “fear of missing out” among the criminals, experts have warned.

Security researchers Proofpoint have detailed BlueMoon, an exploit kit that leverages three vulnerabilities: two in Chromium, and one in older versions of Windows: Windows 10 (October 2018 Update), Windows Server 2019, Windows 10 2004, WIndows Server 2022, and the initial release of Windows 11.

The kit was first seen being used on August 28 2026, by a threat actor tracked as TA412, a China-aligned state-sponsored threat actor that was observed in the past targeting businesses using ...

Copyright of this story solely belongs to www.techradar.com. To see the full text click HERE