#SGBiz
June 20, 2026 at 2:28 PM
Original text: "Gray Rabbits and the Tale of a One-Click Backdoor" — Alexandru-Cristian Bardaș, Gen Digital / Gen Threat Labs (10 September 2026; 26-minute read). Figures, the command table, IOCs and published URLs be
https://core-jmp.org/2026/09/gray-rabbits-one-click-backdoor-sogou-cve-2026-51990/
Gray Rabbits and the Tale of a One-Click Backdoor: CVE-2026-51990 in Sogou Input Method
Gen Threat Labs: CVE-2026-51990 one-click RCE in Sogou IME — sgbiz: argument injection, skincenter CEF, Chromium 80 unsandboxed. UNC3569 dropped GRAYRABBIT in the wild. Tencent patched the handler in 12 days; the browser is still 2020.
core-jmp.org
September 16, 2026 at 10:27 AM
The attack chained Sogou's sgbiz: protocol, weak argument handling and an attacker-controlled URL with CVE-2021-38003 in Chromium V8. This enabled code execution as the logged-in user. UNC3569 has targeted government, education, tech and finance in Asia.
September 11, 2026 at 9:18 AM
CVE-2026-51990 in Sogou Input Method enabled one-click RCE via a crafted sgbiz: link. UNC3569 used the flaw in the wild to deploy the GRAYRABBIT backdoor; Tencent has patched it. #CVE202651990 #GRAYRABBIT #Tencent
Gray Rabbits And The Tale Of A One-Click Backdoor
Gen Threat Labs uncovered CVE-2026-51990 in Sogou Input Method, where a crafted sgbiz: link could chain multiple weaknesses into one-click remote code execution. UNC3569 exploited the flaw in the wild to deliver the GRAYRABBIT backdoor through a malicious page, and Tencent has since patched the issue. #SogouInputMethod #CVE-2026-51990 #UNC3569 #GRAYRABBIT #Tencent
www.hendryadrian.com
September 11, 2026 at 1:45 AM
BuyTicket: Novo anúncio!

Ingresso Monsters of Rock - 2026
(04/04/2026)

• Vendo por: R$700,00
• Tipo: Cadeira Superior
• Categoria: Inteira

Link: https://da.gd/SGbIz

Revenda seu ingresso pela BuyTicketBrasil #BuyTicket
BuyTicket | Compra e Venda de Ingressos
Clique aqui para ver o ingresso!
da.gd
March 13, 2026 at 6:23 PM