A Zero-Day Chain Attack on Windows and Chrome Users Exposes Sensitive Data to Chinese Hackers
Chinese hackers have been exploiting a zero-day chain vulnerability in both Google’s Chrome browser and Microsoft’s Windows operating system, deploying malware known as CLEANGULP. This sophisticated attack allows cybercriminals to access sensitive data and take control of compromised systems.
The attack takes advantage of a previously unknown flaw that allows an attacker to escape the security sandbox of the Chrome browser and then execute malicious code on the underlying Windows system. The vulnerability is particularly concerning because it affects both 64-bit and 32-bit versions of Windows, making millions of users potentially vulnerable.
CLEANGULP malware has been linked to Chinese hacking groups, which have used similar tactics in the past to steal sensitive information from government agencies and large corporations. Once installed on a system, CLEANGULP allows hackers to access files, modify system settings, and even take control of the compromised machine remotely. This level of access makes it difficult for infected users to detect the malware or remove it without proper technical expertise.
The severity of this attack is compounded by its ability to bypass traditional security measures such as antivirus software and firewalls. Cybersecurity experts have noted that CLEANGULP uses advanced techniques to evade detection, making it a challenging threat to mitigate. The fact that Chrome and Windows are both affected means that users who rely on these platforms for daily tasks may be inadvertently exposing themselves to the risk of infection.
The implications of this attack go beyond individual users; compromised systems can become part of larger botnets used for coordinated cyberattacks. This highlights the need for robust security measures, including regular software updates and patches, as well as more proactive threat detection strategies.
To protect against CLEANGULP and similar malware, it’s essential to stay informed about potential vulnerabilities and take prompt action when patches or updates become available. Regular system backups can also help mitigate the damage in case of an infection. Furthermore, users should exercise caution when clicking on suspicious links or downloading attachments from unknown sources, as these tactics are often used by hackers to launch attacks like CLEANGULP.
Source: The Hacker News — 2026-09-23