APT28 Exploited Windows MSHTML Zero-Day Before Microsoft Could Patch It (CVE-2026-21513)
Akamai confirmed Russia's APT28 was exploiting CVE-2026-21513 in Windows MSHTML before Microsoft released the February patch. The attack chains crafted LNK files to bypass Mark-of-the-Web and IE Enhanced Security, delivering payloads without user interaction.