Skip to main content
Microsoft Security

Microsoft Security Response Center (MSRC) Posts

Microsoft Security Response Center (MSRC)

North Korean threat actor Citrine Sleet exploiting Chromium zero-day 

Microsoft identified a North Korean threat actor exploiting a zero-day vulnerability in Chromium (CVE-2024-7971) to gain remote code execution (RCE) in the Chromium renderer process. Our assessment of ongoing analysis and observed infrastructure attributes this activity to Citrine Sleet, a North Korean threat actor that commonly targets the cryptocurrency sector for financial gain.