DIGITALFALL
  • Communities
  • Create Post
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
sanitation@lemmy.today to PC Master Race@lemmy.worldEnglish · 13 days ago

Russian Hackers Are Still Exploiting a WinRAR Vulnerability, Here's How to Protect Yourself

respawnfirst.com

external-link
message-square
25
link
fedilink
74
external-link

Russian Hackers Are Still Exploiting a WinRAR Vulnerability, Here's How to Protect Yourself

respawnfirst.com

sanitation@lemmy.today to PC Master Race@lemmy.worldEnglish · 13 days ago
message-square
25
link
fedilink
Hackers Are Still Exploiting a WinRAR Vulnerability, Here's How to Protect Yourself
respawnfirst.com
external-link
An old WinRAR is still causing hacks because users are not updating their WinRAR. Two hacker groups are targeting victims. Use this method to protect yourself.
  • slazer2au@lemmy.world
    link
    fedilink
    English
    arrow-up
    60
    ·
    13 days ago

    Tldr. Update WinRAR.

    Better option, uninstall WinRAR and use something more sensible like 7zip.

    • cRazi_man@europe.pub
      link
      fedilink
      English
      arrow-up
      16
      ·
      13 days ago

      I’m more of a PeaZip person myself.

      • kn33@lemmy.world
        link
        fedilink
        English
        arrow-up
        4
        ·
        13 days ago

        I like Nanazip

        • cRazi_man@europe.pub
          link
          fedilink
          English
          arrow-up
          6
          ·
          13 days ago

          Full list of options…before this turns into a long list of options: https://alternativeto.net/software/winrar/?license=opensource

          • certified_expert@lemmy.world
            link
            fedilink
            English
            arrow-up
            3
            ·
            13 days ago

            Laughs in tar.gz

    • pulsewidth@lemmy.world
      link
      fedilink
      English
      arrow-up
      12
      ·
      13 days ago

      I’ll just uh… Leave these here.

      https://www.tomshardware.com/tech-industry/cyber-security/wide-ranging-7-zip-vulnerability-with-8-8-cve-rating-allows-for-code-execution-hundreds-of-millions-of-machines-potentially-at-risk

      https://cybersecuritynews.com/7-zip-rce-vulnerability-exploited/ (another similar CVE from late last year)

      I use 7-zip myself, and have for over a decade, but it too has like… A major CVE around once every six months - worse than WinRARs record actually.

      Its no silver bullet.

      • slazer2au@lemmy.world
        link
        fedilink
        English
        arrow-up
        4
        ·
        13 days ago

        Not a silver bullet but the functionality of 7zip is far greater then WinRAR.

    • P03 Locke@lemmy.dbzer0.com
      link
      fedilink
      English
      arrow-up
      7
      arrow-down
      2
      ·
      13 days ago

      I was just about to post “Who the fuck still uses WinRAR?”

      • slazer2au@lemmy.world
        link
        fedilink
        English
        arrow-up
        3
        ·
        13 days ago

        Orgs who haven’t updated their processes in 20 years and still have a valid license.

        • Tiral@lemmy.world
          link
          fedilink
          English
          arrow-up
          1
          ·
          12 days ago

          License? I thought the point was to see how high the number went every time you opened it.

          • slazer2au@lemmy.world
            link
            fedilink
            English
            arrow-up
            1
            ·
            12 days ago

            Until you are a business and you get reamed by legal for using unlicensed software putting the business at legal risk.

      • yistdaj@pawb.social
        link
        fedilink
        English
        arrow-up
        2
        ·
        edit-2
        12 days ago

        A few people over time have sent me RAR files.

        When I ask them why, they always say they had downloaded or received a RAR file at some point, which they didn’t know what to do with until they looked it up and installed WinRAR to extract them. After that, they learned that RAR was better than ZIP for compressing files, causing them to use that instead of ZIP.

        I usually respond with 7-Zip is better than WinRAR in terms of compression, while still being able to extract RAR files, which doesn’t always win people over because these are non-technical people that are usually hesitant to install new software unless they actually need to.

        None of these people knew each other when they first started using WinRAR, so I think this is actually pretty common.

        Edit: with that being said, it probably happens less often now that Windows 11 can natively extract RAR files.

      • plutopos@lemmy.zip
        link
        fedilink
        English
        arrow-up
        1
        ·
        10 days ago

        The same people who stay on Windows 10 even though it will stop getting security updates: nostalgics

    • plutopos@lemmy.zip
      link
      fedilink
      English
      arrow-up
      2
      ·
      10 days ago

      Most of the clippy pfp people won’t switch away from WinRAR, just like they won’t switch away from Windows 10 no matter how many vulnerabilities it gets

    • Phoenixz@lemmy.ca
      link
      fedilink
      English
      arrow-up
      1
      arrow-down
      1
      ·
      12 days ago

      Better option: move to Linux, also dump rar

PC Master Race@lemmy.world

pcmasterrace@lemmy.world

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !pcmasterrace@lemmy.world

A community for PC Master Race.

Rules:

  1. No bigotry: Including racism, sexism, homophobia, transphobia, or xenophobia. Code of Conduct.
  2. Be respectful. Everyone should feel welcome here.
  3. No NSFW content.
  4. No Ads / Spamming.
  5. Be thoughtful and helpful: especially when new beginners have questions.
Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 901 users / day
  • 2.38K users / week
  • 3.97K users / month
  • 6.39K users / 6 months
  • 1 local subscriber
  • 21.5K subscribers
  • 655 Posts
  • 10.2K Comments
  • Modlog
  • mods:
  • BigFig@lemmy.world
  • _MoveSwiftly@lemmy.world
  • Xeon@lemmy.ml
  • IowaMan@lemmy.world
  • The_Vampire@lemmy.world
  • CatZoomies@lemmy.world
  • geosoco@kbin.social
  • Fudgeknuckles98@lemmy.world
  • Starfer@lemmy.world
  • BE: 0.19.18
  • Modlog
  • Legal
  • Instances
  • Docs
  • Code
  • join-lemmy.org