Four Hacking Groups Exploit Same Vulnerabilities in Chrome and Windows

A new exploit kit named BlueMoon is being utilized by multiple hacking groups, targeting critical vulnerabilities in Chromium-based browsers and Windows.

3 min readTechnology

Recent findings by Proofpoint reveal that at least four distinct hacking groups are leveraging a similar exploit kit known as BlueMoon. This kit is designed to target significant vulnerabilities in both Chromium-based web browsers and various versions of Windows, including the latest updates. BlueMoon combines three specific vulnerabilities: two affecting Chromium and one related to the Windows kernel, impacting systems like Windows 10 and Windows 11. Notably, all these vulnerabilities have been patched recently. Unlike typical stealthy attacks, the deployment of this exploit kit has been aggressive and widespread. Researchers suggest that the visibility of this exploit chain may be due to a 'patch gap' in the Chromium ecosystem, where there is a delay between when a patch is released and when it is implemented in browsers like Chrome and Edge. Additionally, the use of artificial intelligence may have expedited the identification of these vulnerabilities, allowing hackers to act more swiftly.

Technology