TI Mindmap HUB
Threat Intelligence Report

Once in a BlueMoon: Multiple State-Aligned Threat Actors Rapidly Adopt Novel Exploit Chain Using Chrome and Windows Zero-Days

📅 September 10, 2026 📰 www.proofpoint.com 🔍 3 CVE(s) referenced

Multiple state-aligned threat actors, primarily China-linked, rapidly adopted a new exploit kit called BlueMoon—leveraging unpatched Chrome and Windows zero-days in targeted espionage campaigns—highlighting the accelerating pace and accessibility of advanced exploit development, likely aided by AI and the open source patch-gap.

vendor
CVE-2026-87491, CVE-2026-85046, CVE-2026-85880

Sign in to access the full report including:
detailed analysis, IOCs, MITRE ATT&CK mapping, and STIX bundle.

🔐 Sign In to Read Full Report

You'll need to accept our Terms of Service to access the platform.

📊 Visual Mindmap
🎯 IOC Extraction
⚔️ MITRE ATT&CK TTPs
📦 STIX 2.1 Bundle