Russian Hacking Group 'RomCom' Exploits WinRAR, Putting Millions of Users at Risk
This page summarises the reported incident in plain language — what happened, who may be affected, and what to watch for before trusting a message, call, or link.
This is a summary of a reported incident, not a verdict. Read the disclaimer.
The 420
If this just happened to you
Do these steps in order. Speed matters.
- Stop the call or chat. Do not click more links or send money.
- Call your bank's official helpline (on your card or the bank website) and ask to block cards and freeze transfers.
- Call 1930 within 24 hours and file a complaint at cybercrime.gov.in.
- Save evidence — screenshots, numbers, links, and messages.
More reporting channels and helplines are below. Full reporting channels & helplines →
What happened
A security flaw in WinRAR (CVE-2025-8088) has been exploited by Russian hacking group RomCom in targeted phishing campaigns. The vulnerability allows remote code execution by placing malicious files i...
Where this report came from
RISX summarises public reporting into plain language. Always check the original — wording and dates may change after publication.
Last updated from feed: 10 August 2025 at 09:00 am
- The 420
https://the420.in/winrar-vulnerability-romcom-hacking-group-phishing-attacks/
Report details
Published on
10 August 2025 at 09:00 am
Reported by
The 420
Reported
phishing
Target profile
software users
Common scam keywords
Words and phrases scammers use in this kind of scam. If you see them in a message, treat it as a .
(numbers, IDs, links, domains)
Specific things tied to this scam. Tap any item to see other alerts where it appears.