CybersecurityRCE VulnerabilitySoftware UpdateFile Compression ToolCanadian Business

Update now: 7-Zip fixes RCE flaw exploitable with malicious archives

July 18, 2026

Back to all posts

Source: BleepingComputer

A critical Remote Code Execution (RCE) vulnerability, identified as CVE-2021-44228, has been discovered in 7-Zip, a popular file compression and extraction tool. This flaw allows attackers to execute malicious code on affected systems when opening a specially crafted archive file. Given the wide use of 7-Zip among businesses and individuals worldwide, it poses a significant threat to Canadian organizations. To mitigate this risk, it is recommended that users immediately update to the latest version of 7-Zip (21.0) which addresses this vulnerability. This issue highlights the importance of keeping software up-to-date, especially tools used for file handling that interact directly with user data. Cybercriminals frequently exploit known vulnerabilities in popular applications to gain unauthorized access to networks and systems. Canadian businesses should prioritize regular updates and patch management as part of their cybersecurity strategies to protect against such threats.
CybersecurityRCE VulnerabilitySoftware UpdateFile Compression ToolCanadian Business

Concerned about this threat to your business?

We help Canadian SMBs deploy the controls discussed in this article. Free 30-minute assessment — no obligation.

Book a free assessment