Hackers exploit Tencent app flaw to deploy GrayRabbit malware
8 Articles
8 Articles
Hackers exploit Tencent app flaw to deploy GrayRabbit malware
Threat actors linked to a China-aligned espionage group are exploiting a critical vulnerability (CVE-2026-51990) in Tencent's Sogou Input Method for Windows to deploy the GrayRabbit backdoor.
A critical failure in Sogou Input Method, a popular Tencent application for Windows, was exploited by a link manipulated to install the GrayRabbit rear door. The chain combined insecure arguments, unrestricted browsing and an outdated Chromium browser operating without sandbox.
One Click on a Malicious Link Lets Hackers Backdoor Sogou Input Method Users
A single click on a malicious link could have given attackers a direct path into Windows systems running Sogou Input Method. The flaw turned a commonly installed Chinese-language typing tool into an entry point for the GRAYRABBIT backdoor, exposing users to espionage, data theft, and remote control of their computers. The attack was not based […]
Coverage Details
Bias Distribution
- 100% of the sources are Center
Factuality
To view factuality data please Upgrade to Premium







