Four hacking groups, some linked to the Chinese government, are actively using an exploit kit called BlueMoon that chains three vulnerabilities across Chromium browsers and Windows. The kit targets unpatched systems during a critical window before browser patches roll out, and Proofpoint warns its rapid sharing signals a reduced barrier to entry for weaponizing high-value browser exploits.
Background
Proofpoint researchers identified the BlueMoon exploit kit targeting a chain of three zero-day vulnerabilities. All three vulnerabilities have since received patches from Microsoft and Chromium maintainers.
- Source
- Ars Technica
- Published
- Sep 10, 2026 at 04:55 AM
- Score
- 8.0 / 10