Cybersecurity

Hackers exploit Tencent app flaw to deploy GrayRabbit malware

Threat actors linked to a China-aligned espionage group are exploiting a critical vulnerability in Tencent's Sogou Input Method for Windows to deploy the GrayRabbit backdoor. The vulnerability, identified as CVE-2026-51990, allows attackers to gain unauthorized access to a system and install malware without the user's knowledge. The hackers are targeting users in China, and the exploit is being used to collect sensitive information.

Read the full article at bleepingcomputer.com →