Some versions of WPS for Windows are suspected to have a remote code execution vulnerability, leading to the theft of multiple users' private keys
ChainCatcher message, according to community reports, several members of the crypto community have reported that their private keys have been stolen, with speculation suggesting that this situation is due to the use of the Bit Finger browser.
In response, the official Bit Finger browser stated in the community that certain versions of WPS For Windows have a remote code execution vulnerability, which attackers can exploit to execute arbitrary code on the victim's target host, taking control of the host, etc.
Currently known affected versions include WPS Office 2023 Personal Edition below 12.1.0.15120 (inclusive), and WPS Office Institutional Editions (such as Professional Edition, Professional Enhanced Edition) below 11.8.2.12055 (inclusive).
This vulnerability is relatively easy to trigger, and users may have already been attacked by hackers after clicking on unknown links.