The Russia-aligned threat actor known as RomCom has been linked to the zero-day exploitation of two security flaws, one in Mozilla Firefox and the other in Microsoft Windows, as part of attacks designed to deliver the eponymous backdoor on victim systems.
“In a successful attack, if a victim browses a web page containing the exploit, an adversary can run arbitrary code – without any user The Russia-aligned threat actor known as RomCom has been linked to the zero-day exploitation of two security flaws, one in Mozilla Firefox and the other in Microsoft Windows, as part of attacks designed to deliver the eponymous backdoor on victim systems.
“In a successful attack, if a victim browses a web page containing the exploit, an adversary can run arbitrary code – without any user
- Exploit Attempts for Dassault DELMIA Apriso. CVE-2025-5086, (Wed, Sep 3rd) SANS Internet Storm Center, InfoCON: green
- WhatsApp Bug Anchors Targeted Zero-Click iPhone Attacks darkreadingElizabeth Montalbano, Contributing Writer
- Threat Actors Weaponize HexStrike AI to Exploit Citrix Flaws Within a Week of Disclosure The Hacker [email protected] (The Hacker News)
- CISA, NSA, and Global Partners Release a Shared Vision for Software Bill of Materials (SBOM) Guidance AlertsCISA
- Varonis Acquires Email Security Provider SlashNext to Enhance BEC Defenses darkreadingJeffrey Schwartz
- The Beginner’s Guide to Using AI: 5 Easy Ways to Get Started (Without Accidentally Summoning Skynet)by Tech Jacks
- Tips and Tricks to Enhance Your Incident Response Proceduresby Tech Jacks
- Building a Security Roadmap for Your Company: Strategic Precision for Modern Enterprises by Tech Jacks
- The Power of Policy: How Creating Strong Standard Operating Procedures Expedites Security Initiativesby Tech Jacks
- Building a Future-Proof SOC: Strategies for CISOs and Infosec Leaders by Tech Jacks
- Security Gate Keeping – Annoying – Unhelpfulby Tech Jacks
- The Beginner’s Guide to Using AI: 5 Easy Ways to Get Started (Without Accidentally Summoning Skynet)
Leave A Reply