
CVE-2025-8088 is a high-severity path traversal flaw in WinRAR for Windows. Exploited as a zero-day by Russian APT groups RomCom and Paper Werewolf.
![[Threat Actor Profile] Sandworm’s 2024–2025 Playbook — Infrastructure, Targets, TTPs](https://noorstream.com/wp-content/uploads/2025/08/noorstream-sandworm.png)
Sandworm (APT44) GRU unit’s 2024–2025 playbook: ZEROLOT wiper, BadPilot access ops, and sector‑specific TTPs mapped to MITRE.