Hacker News with Generative AI: Zero-Day Exploits

RomCom exploits Firefox and Windows zero days in the wild (welivesecurity.com)
ESET researchers discovered a previously unknown vulnerability in Mozilla products, exploited in the wild by Russia-aligned group RomCom. This is at least the second time that RomCom has been caught exploiting a significant zero-day vulnerability in the wild, after the abuse of CVE-2023-36884 via Microsoft Word in June 2023.
Possible Azure RCE (zerodayinitiative.com)
Palo Alto Networks PAN-OS Zero-Day Exploitation (volexity.com)