China-Linked Hackers Exploit Chrome-Windows Zero-Day Chain to Deploy GRIMWEDGE

General Security Talk, Announcements and News
Post Reply
Starburst-David
Posts: 314
Joined: Wed Feb 11, 2026 8:31 pm

China-Linked Hackers Exploit Chrome-Windows Zero-Day Chain to Deploy GRIMWEDGE

Post by Starburst-David »

A Chinese threat actor has been attributed to a spear-phishing campaign that exploits recently patched security flaws in Google Chrome and Microsoft Windows to deliver a malicious JavaScript backdoor called GRIMWEDGE.

Volexity, which is tracking the threat cluster under the moniker UTA0560, said the activity targeted multiple non-governmental organizations (NGOs) on September 1, 2026.

Published Date: Sep 15, 2026

Vulnerabilities has been mentioned in this article.
CVE-2026-87491 CVE-2026-85880 CVE-2026-85046

More Information:
https://thehackernews.com/2026/09/china ... hrome.html
 

POSTREACT(ions) SUMMARY

Post Reply

Return to “General”