Russian RomCom Hackers Exploit Firefox and Windows Zero-Day Vulnerabilities

1 min read
Source: We Live Security
Russian RomCom Hackers Exploit Firefox and Windows Zero-Day Vulnerabilities
Photo: We Live Security
TL;DR Summary

ESET researchers have identified a critical zero-day vulnerability in Mozilla products, exploited by the Russia-aligned group RomCom, allowing arbitrary code execution in Firefox, Thunderbird, and Tor Browser. This vulnerability, CVE-2024-9680, when combined with another Windows zero-day, CVE-2024-49039, enables attackers to install the RomCom backdoor without user interaction. The attack targets various sectors globally, with patches released by Mozilla and Microsoft to address these vulnerabilities. RomCom is known for both cybercrime and espionage activities.

Share this article

Reading Insights

Total Reads

0

Unique Readers

0

Time Saved

18 min

vs 18 min read

Condensed

98%

3,59673 words

Want the full story? Read the original article

Read on We Live Security