This Talos newsletter highlights the discovery of msaRAT, a Rust/Tokio-based remote access trojan used by the Chaos ransomware group that establishes covert command-and-control by hijacking Chrome/Edge browsers via the Chrome DevTools Protocol, delivered through an MSI disguised as a Windows update and loaded directly into memory. The issue also reviews Q2 2026 vulnerability landscape statistics, showing 49% YoY growth in total CVEs versus only 13% growth in CISA KEVs, and advocates using EPSS scoring alongside CVSS to prioritize patching against a backlog where nearly half of actively exploited CVEs date to 2025 or earlier.
CVE Trends
1 post
Don’t swing at everything