중국 해커가 크롬-윈도우 제로데이 취약점을 악용하여 CLEANGULP 악성코드를 배포하고 있다.
중국 해커 UTA0565가 최근 공개된 구글 크롬-마이크로소프트 윈도우 제로데이 공격을 통해 악성코드 CLEANGULP를 배포하고 있다. 이 공격은 2026년 9월 3일과 4일에 발생했으며, 두 가지 크롬 취약점(CVE-2026-85046, CVE-2026-87491)과 하나의 윈도우 취약점(CVE-2026-85880)을 연계하여 수행되었다.
Chinese hackers exploit Chrome-Windows zero-day bugs to deploy CLEANGULP malware.
A Chinese threat actor, UTA0565, has been exploiting a recently disclosed Chrome-Windows zero-day exploit chain to deploy CLEANGULP malware. The attacks were detected on September 3 and 4, 2026, involving the chaining of two Chrome vulnerabilities (CVE-2026-85046, CVE-2026-87491) and one impacting Windows (CVE-2026-85880).