{"id":83419,"date":"2023-08-22T15:14:49","date_gmt":"2023-08-22T12:14:49","guid":{"rendered":"https:\/\/forklog.com\/en\/?p=83419"},"modified":"2025-09-12T11:01:08","modified_gmt":"2025-09-12T08:01:08","slug":"cryptocurrency-holders-warned-about-winrar-vulnerability","status":"publish","type":"post","link":"https:\/\/u1f987.com\/en\/cryptocurrency-holders-warned-about-winrar-vulnerability\/","title":{"rendered":"Cryptocurrency holders warned about WinRAR vulnerability."},"content":{"rendered":"<p>Journalist Colin Wu warned cryptocurrency holders about the potential risk of losing funds due to a discovered critical vulnerability in the popular archiver WinRAR.<\/p>\n<figure class=\\\"wp-block-image size-full\\\"><img decoding=\\\"async\\\" src=\\\"https:\/\/u1f987.com\/wp-content\/uploads\/Opera-Snimok_2023-08-22_151313_twitter.com_.webp\\\" alt=\\\"Opera-Snimok_2023-08-22_151313_twitter.com_\\\" class=\\\"wp-image-214133\\\"\/><figcaption class=\\\"wp-element-caption\\\">Data: <a href=\\\"https:\/\/twitter.com\/WuBlockchain\/status\/1693897016135631197\\\">X<\/a>.<\/figcaption><\/figure>\n<blockquote class=\\\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\\\"><p>\\n<\/p>\n<p>\u201cThe problem arises due to the absence of proper validation of user data when processing recovery volumes, which could lead to memory access beyond the allocated buffer,\u201d the vulnerability bulletin says.<\/p>\n<p>\\n<\/p><\/blockquote>\n<p>The identified bug allowed attackers to remotely run malicious code on a live system, provided the user opened a specially crafted RAR archive.<\/p>\n<blockquote class=\\\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\\\"><p>\\n<\/p>\n<p>\u201cCryptocurrency holders are advised to exercise caution with updates and financial risks, and to remember that the \u2018WinRAR vulnerability detection tool\u2019 may be a malicious phishing program,\u201d Colin Wu wrote.<\/p>\n<p>\\n<\/p><\/blockquote>\n<p>The vulnerability was first discovered on <a href=\\\"https:\/\/www.bleepingcomputer.com\/news\/security\/winrar-flaw-lets-hackers-run-programs-when-you-open-rar-archives\/\\\">June 8<\/a>. In <a href=\\\"https:\/\/www.win-rar.com\/singlenewsview.html?&#038;L=0&#038;tx_ttnews%5Btt_news%5D=232&#038;cHash=c5bf79590657e32554c6683296a8e8aa\\\">the new version of the program<\/a>, it has been fully addressed.<\/p>\n<p>\\n\\n\\n<\/p>\n<p>Earlier ForkLog reported that hackers from Russia used WinRAR <a href=\"https:\/\/u1f987.com\/en\/news\/stalking-via-a-cats-tiktok-account-apologies-from-extortionists-and-other-cybersecurity-developments\">to destroy data<\/a> in attacks on Ukraine\u2019s government agencies.<\/p>\n<p>\\n<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Cryptocurrency holders warned of the potential risk of losing funds due to a discovered critical vulnerability in the popular archiver WinRAR.<\/p>\n","protected":false},"author":1,"featured_media":83420,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"select":"1","news_style_id":"1","cryptorium_level":"","_short_excerpt_text":"","creation_source":"","_metatest_mainpost_news_update":false,"footnotes":""},"categories":[3],"tags":[1301,1111],"class_list":["post-83419","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news-and-analysis","tag-blockchain-vulnerabilities","tag-cybersecurity"],"aioseo_notices":[],"amp_enabled":true,"views":"8","promo_type":"1","layout_type":"1","short_excerpt":"","is_update":"","_links":{"self":[{"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/posts\/83419","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/comments?post=83419"}],"version-history":[{"count":1,"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/posts\/83419\/revisions"}],"predecessor-version":[{"id":83421,"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/posts\/83419\/revisions\/83421"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/media\/83420"}],"wp:attachment":[{"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/media?parent=83419"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/categories?post=83419"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/tags?post=83419"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}