A group of cybercriminals associated with a China-based espionage operation is taking advantage of a significant security flaw in Tencent's Sogou Input Method for Windows. This vulnerability, identified as CVE-2026-51990, allows attackers to install the GrayRabbit backdoor on targeted systems. The exploitation of this flaw poses a considerable risk, as it enables unauthorized access and control over infected devices. The GrayRabbit malware is designed to facilitate further malicious activities, including data theft and surveillance. Security experts are urging users to update their software immediately to mitigate the risks associated with this vulnerability. The ongoing threat highlights the importance of maintaining up-to-date security measures and being vigilant against potential cyber threats.
Cybercriminals Target Tencent App Vulnerability to Spread GrayRabbit Malware
A serious security flaw in Tencent's Sogou Input Method is being exploited by hackers to introduce the GrayRabbit backdoor.
