BreachBriefs[verified]@BreachBriefActive Exploitation
Chinese APT groups are actively exploiting CVE‑2020‑16040 via fake Chrome updates to deliver backdoors, and a patch is recommended.
TrendAI™ Research[verified]@trendai_RSRCHActive Exploitation
TrendAI observed the PeckBirdy malware actively exploiting CVE-2020-16040 via fake Chrome updates and reverse shells, confirming in-the-wild attacks.
TrendAI™ Research[verified]@trendai_RSRCHActive Exploitation
TrendAI Research reports that CVE-2020-16040 is actively exploited by the PeckBirdy team, which distributes falsified Chrome updates and achieves reverse shells.
TrendAI™ Research[verified]@trendai_RSRCHActive Exploitation
TrendAI research reports that the JScript-based PeckBirdy framework is actively exploiting CVE-2020-16040 by delivering fake Chrome updates and launching reverse shells.
Cybersecurity News Everyday@TweetThreatNewsGeneral
Trend Micro reports the PeckBirdy JavaScript C2 framework used by China‑aligned APTs, noting associations with modular backdoors, stolen certificates, Cobalt Strike, and the CVE‑2020‑16040 exploit, but provides no details on PoC, active exploitation, or patches.