News

Russia-linked APT28 exploited MSHTML zero-day CVE-2026-21513 before patch

  • Pierluigi Paganini--Securityaffairs.com
  • published date: 2026-03-02 14:45:52 UTC

Russia-linked APT28 reportedly exploited MSHTML zero-day CVE-2026-21513 before Microsoft patched it, a high-severity bypass flaw. Akamai reports that Russia-linked APT28 may have exploited CVE-2026-21513 CVSS score of 8.8), a high-severity MSHTML vulnerabilit…

Russia-linked APT28 exploited MSHTML zero-day CVE-2026-21513 before patch Akamai reports that Russia-linked APT28 may have exploited CVE-2026-21513 CVSS score of 8.8), a high-severity MSHTML vulnera… [+2741 chars]