{"id":340663,"date":"2024-12-13T18:58:29","date_gmt":"2024-12-13T17:58:29","guid":{"rendered":"https:\/\/realites.com.tn\/fr\/?p=340663"},"modified":"2024-12-13T20:23:12","modified_gmt":"2024-12-13T19:23:12","slug":"eset-research-decouvre-une-double-menace-visant-mozilla-et-windows","status":"publish","type":"post","link":"https:\/\/realites.com.tn\/fr\/eset-research-decouvre-une-double-menace-visant-mozilla-et-windows\/","title":{"rendered":"ESET Research d\u00e9couvre une double menace visant Mozilla et Windows"},"content":{"rendered":"<p>ESET Research a annonc\u00e9 avoir d\u00e9couvert deux vuln\u00e9rabilit\u00e9s zero-day. D\u2019une part la CVE-2024-9680 dans les produits Mozilla (avec un score CVSS de 9,8 sur une \u00e9chelle de 0 \u00e0 10) et d\u2019autre part la CVE-2024-49039 dans Windows.<\/p>\n<p>Ces deux vuln\u00e9rabilit\u00e9s sont exploit\u00e9es par le groupe APT RomCom, align\u00e9 sur les int\u00e9r\u00eats de la Russie. Les failles permettent l&rsquo;ex\u00e9cution de code \u00e0 distance sans interaction utilisateur, conduisant \u00e0 l&rsquo;installation d&rsquo;une porte d\u00e9rob\u00e9e. Les attaques ont principalement cibl\u00e9 l&rsquo;Ukraine, l&rsquo;Europe et les \u00c9tats-Unis entre octobre et novembre 2024. La sophistication dans la d\u00e9couverte et l\u2019exploitation de ces failles d\u00e9montre la capacit\u00e9 avanc\u00e9e du groupe \u00e0 d\u00e9velopper des exploits furtifs.<\/p>\n<p>En 2024, ESET a r\u00e9v\u00e9l\u00e9 les activit\u00e9s du groupe ciblant les secteurs de la d\u00e9fense et de l&rsquo;\u00e9nergie en Ukraine, les secteurs pharmaceutiques et de l&rsquo;assurance aux \u00c9tats-Unis, le secteur juridique en Allemagne et des entit\u00e9s gouvernementales en Europe.<\/p>\n<p>Le m\u00e9canisme d&rsquo;attaque est le suivant. Un premier site, souvent une imitation d\u2019un site l\u00e9gitime, redirige ensuite la future victime vers un autre serveur distribuant l\u2019exploit. Si l&rsquo;exploit r\u00e9ussit, un shellcode t\u00e9l\u00e9charge et ex\u00e9cute la porte d\u00e9rob\u00e9e de RomCom (Un groupe qui m\u00e8ne des op\u00e9rations de cyberespionnage et de cybercriminalit\u00e9 dans divers secteurs d\u2019activit\u00e9s).<\/p>\n<p>\u00ab Bien que la m\u00e9thode de propagation du lien du faux site Web reste inconnue, un navigateur vuln\u00e9rable permet l&rsquo;ex\u00e9cution automatique d&rsquo;une charge utile malveillante sur l&rsquo;ordinateur de la victime, sans aucune interaction de sa part. \u00bb, explique Damien Schaeffer, chercheur chez ESET, qui a d\u00e9couvert les deux vuln\u00e9rabilit\u00e9s. \u00ab Nous tenons \u00e0 remercier l&rsquo;\u00e9quipe de Mozilla d&rsquo;avoir \u00e9t\u00e9 tr\u00e8s r\u00e9active et \u00e0 souligner leur impressionnante \u00e9thique de travail pour publier un correctif en une journ\u00e9e \u00bb, ajoute-t-il.<\/p>\n<p>C&rsquo;est au moins la deuxi\u00e8me fois que RomCom exploite une vuln\u00e9rabilit\u00e9 zero-day d\u2019importance, apr\u00e8s l&rsquo;utilisation de CVE-2023-36884 via Microsoft Word en juin 2023.<\/p>\n<p>Depuis plus de 30\u202fans, ESET d\u00e9veloppe des logiciels et des services de s\u00e9curit\u00e9 informatique de pointe pour prot\u00e9ger les entreprises, les infrastructures critiques et les consommateurs du monde entier contre des menaces digitales de plus en plus sophistiqu\u00e9es.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>ESET Research a annonc\u00e9 avoir d\u00e9couvert deux vuln\u00e9rabilit\u00e9s zero-day. D\u2019une part la CVE-2024-9680 dans les produits Mozilla (avec un score CVSS de 9,8 sur une \u00e9chelle de 0 \u00e0 10)&hellip;<\/p>\n","protected":false},"author":60,"featured_media":340664,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_lmt_disableupdate":"","_lmt_disable":"","_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[4],"tags":[],"class_list":["post-340663","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-actualites"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v26.3 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>ESET Research d\u00e9couvre une double menace visant Mozilla et Windows - R\u00e9alit\u00e9s Magazine<\/title>\n<meta name=\"description\" content=\"ESET Research a annonc\u00e9 avoir d\u00e9couvert deux vuln\u00e9rabilit\u00e9s zero-day. D\u2019une part la CVE-2024-9680 dans les produits Mozilla (avec un score CVSS de 9,8 sur\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/realites.com.tn\/fr\/eset-research-decouvre-une-double-menace-visant-mozilla-et-windows\/amp\/\" \/>\n<meta property=\"og:locale\" content=\"fr_FR\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"ESET Research d\u00e9couvre une double menace visant Mozilla et Windows - R\u00e9alit\u00e9s Magazine\" \/>\n<meta property=\"og:description\" content=\"ESET Research a annonc\u00e9 avoir d\u00e9couvert deux vuln\u00e9rabilit\u00e9s zero-day. D\u2019une part la CVE-2024-9680 dans les produits Mozilla (avec un score CVSS de 9,8 sur\" \/>\n<meta property=\"og:url\" content=\"https:\/\/realites.com.tn\/fr\/eset-research-decouvre-une-double-menace-visant-mozilla-et-windows\/amp\/\" \/>\n<meta property=\"og:site_name\" content=\"R\u00e9alit\u00e9s Magazine\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/realites.tn\/\" \/>\n<meta property=\"article:published_time\" content=\"2024-12-13T17:58:29+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2024-12-13T19:23:12+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/realites.com.tn\/fr\/wp-content\/uploads\/2024\/12\/images-4.png\" \/>\n\t<meta property=\"og:image:width\" content=\"267\" \/>\n\t<meta property=\"og:image:height\" content=\"189\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"La R\u00e9daction\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"\u00c9crit par\" \/>\n\t<meta name=\"twitter:data1\" content=\"La R\u00e9daction\" \/>\n\t<meta name=\"twitter:label2\" content=\"Dur\u00e9e de lecture estim\u00e9e\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/realites.com.tn\/fr\/eset-research-decouvre-une-double-menace-visant-mozilla-et-windows\/amp\/\",\"url\":\"https:\/\/realites.com.tn\/fr\/eset-research-decouvre-une-double-menace-visant-mozilla-et-windows\/amp\/\",\"name\":\"ESET Research d\u00e9couvre une double menace visant Mozilla et Windows - R\u00e9alit\u00e9s Magazine\",\"isPartOf\":{\"@id\":\"https:\/\/realites.com.tn\/fr\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/realites.com.tn\/fr\/eset-research-decouvre-une-double-menace-visant-mozilla-et-windows\/amp\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/realites.com.tn\/fr\/eset-research-decouvre-une-double-menace-visant-mozilla-et-windows\/amp\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/realites.com.tn\/fr\/wp-content\/uploads\/2024\/12\/images-4.png\",\"datePublished\":\"2024-12-13T17:58:29+00:00\",\"dateModified\":\"2024-12-13T19:23:12+00:00\",\"author\":{\"@id\":\"https:\/\/realites.com.tn\/fr\/#\/schema\/person\/438b71c29a257d955d96d8aef42336e7\"},\"description\":\"ESET Research a annonc\u00e9 avoir d\u00e9couvert deux vuln\u00e9rabilit\u00e9s zero-day. D\u2019une part la CVE-2024-9680 dans les produits Mozilla (avec un score CVSS de 9,8 sur\",\"breadcrumb\":{\"@id\":\"https:\/\/realites.com.tn\/fr\/eset-research-decouvre-une-double-menace-visant-mozilla-et-windows\/amp\/#breadcrumb\"},\"inLanguage\":\"fr-FR\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/realites.com.tn\/fr\/eset-research-decouvre-une-double-menace-visant-mozilla-et-windows\/amp\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"fr-FR\",\"@id\":\"https:\/\/realites.com.tn\/fr\/eset-research-decouvre-une-double-menace-visant-mozilla-et-windows\/amp\/#primaryimage\",\"url\":\"https:\/\/realites.com.tn\/fr\/wp-content\/uploads\/2024\/12\/images-4.png\",\"contentUrl\":\"https:\/\/realites.com.tn\/fr\/wp-content\/uploads\/2024\/12\/images-4.png\",\"width\":267,\"height\":189},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/realites.com.tn\/fr\/eset-research-decouvre-une-double-menace-visant-mozilla-et-windows\/amp\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/realites.com.tn\/fr\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"ESET Research d\u00e9couvre une double menace visant Mozilla et Windows\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/realites.com.tn\/fr\/#website\",\"url\":\"https:\/\/realites.com.tn\/fr\/\",\"name\":\"R\u00e9alit\u00e9s Magazine\",\"description\":\"Actualit\u00e9s de la Tunisie\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/realites.com.tn\/fr\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"fr-FR\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/realites.com.tn\/fr\/#\/schema\/person\/438b71c29a257d955d96d8aef42336e7\",\"name\":\"La R\u00e9daction\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"fr-FR\",\"@id\":\"https:\/\/realites.com.tn\/fr\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/fbe9ab25fcc82b6e660ad5648f91eadb?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/fbe9ab25fcc82b6e660ad5648f91eadb?s=96&d=mm&r=g\",\"caption\":\"La R\u00e9daction\"},\"url\":\"https:\/\/realites.com.tn\/fr\/author\/realites5201\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"ESET Research d\u00e9couvre une double menace visant Mozilla et Windows - R\u00e9alit\u00e9s Magazine","description":"ESET Research a annonc\u00e9 avoir d\u00e9couvert deux vuln\u00e9rabilit\u00e9s zero-day. D\u2019une part la CVE-2024-9680 dans les produits Mozilla (avec un score CVSS de 9,8 sur","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/realites.com.tn\/fr\/eset-research-decouvre-une-double-menace-visant-mozilla-et-windows\/amp\/","og_locale":"fr_FR","og_type":"article","og_title":"ESET Research d\u00e9couvre une double menace visant Mozilla et Windows - R\u00e9alit\u00e9s Magazine","og_description":"ESET Research a annonc\u00e9 avoir d\u00e9couvert deux vuln\u00e9rabilit\u00e9s zero-day. D\u2019une part la CVE-2024-9680 dans les produits Mozilla (avec un score CVSS de 9,8 sur","og_url":"https:\/\/realites.com.tn\/fr\/eset-research-decouvre-une-double-menace-visant-mozilla-et-windows\/amp\/","og_site_name":"R\u00e9alit\u00e9s Magazine","article_publisher":"https:\/\/www.facebook.com\/realites.tn\/","article_published_time":"2024-12-13T17:58:29+00:00","article_modified_time":"2024-12-13T19:23:12+00:00","og_image":[{"width":267,"height":189,"url":"https:\/\/realites.com.tn\/fr\/wp-content\/uploads\/2024\/12\/images-4.png","type":"image\/png"}],"author":"La R\u00e9daction","twitter_card":"summary_large_image","twitter_misc":{"\u00c9crit par":"La R\u00e9daction","Dur\u00e9e de lecture estim\u00e9e":"2 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/realites.com.tn\/fr\/eset-research-decouvre-une-double-menace-visant-mozilla-et-windows\/amp\/","url":"https:\/\/realites.com.tn\/fr\/eset-research-decouvre-une-double-menace-visant-mozilla-et-windows\/amp\/","name":"ESET Research d\u00e9couvre une double menace visant Mozilla et Windows - R\u00e9alit\u00e9s Magazine","isPartOf":{"@id":"https:\/\/realites.com.tn\/fr\/#website"},"primaryImageOfPage":{"@id":"https:\/\/realites.com.tn\/fr\/eset-research-decouvre-une-double-menace-visant-mozilla-et-windows\/amp\/#primaryimage"},"image":{"@id":"https:\/\/realites.com.tn\/fr\/eset-research-decouvre-une-double-menace-visant-mozilla-et-windows\/amp\/#primaryimage"},"thumbnailUrl":"https:\/\/realites.com.tn\/fr\/wp-content\/uploads\/2024\/12\/images-4.png","datePublished":"2024-12-13T17:58:29+00:00","dateModified":"2024-12-13T19:23:12+00:00","author":{"@id":"https:\/\/realites.com.tn\/fr\/#\/schema\/person\/438b71c29a257d955d96d8aef42336e7"},"description":"ESET Research a annonc\u00e9 avoir d\u00e9couvert deux vuln\u00e9rabilit\u00e9s zero-day. D\u2019une part la CVE-2024-9680 dans les produits Mozilla (avec un score CVSS de 9,8 sur","breadcrumb":{"@id":"https:\/\/realites.com.tn\/fr\/eset-research-decouvre-une-double-menace-visant-mozilla-et-windows\/amp\/#breadcrumb"},"inLanguage":"fr-FR","potentialAction":[{"@type":"ReadAction","target":["https:\/\/realites.com.tn\/fr\/eset-research-decouvre-une-double-menace-visant-mozilla-et-windows\/amp\/"]}]},{"@type":"ImageObject","inLanguage":"fr-FR","@id":"https:\/\/realites.com.tn\/fr\/eset-research-decouvre-une-double-menace-visant-mozilla-et-windows\/amp\/#primaryimage","url":"https:\/\/realites.com.tn\/fr\/wp-content\/uploads\/2024\/12\/images-4.png","contentUrl":"https:\/\/realites.com.tn\/fr\/wp-content\/uploads\/2024\/12\/images-4.png","width":267,"height":189},{"@type":"BreadcrumbList","@id":"https:\/\/realites.com.tn\/fr\/eset-research-decouvre-une-double-menace-visant-mozilla-et-windows\/amp\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/realites.com.tn\/fr\/"},{"@type":"ListItem","position":2,"name":"ESET Research d\u00e9couvre une double menace visant Mozilla et Windows"}]},{"@type":"WebSite","@id":"https:\/\/realites.com.tn\/fr\/#website","url":"https:\/\/realites.com.tn\/fr\/","name":"R\u00e9alit\u00e9s Magazine","description":"Actualit\u00e9s de la Tunisie","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/realites.com.tn\/fr\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"fr-FR"},{"@type":"Person","@id":"https:\/\/realites.com.tn\/fr\/#\/schema\/person\/438b71c29a257d955d96d8aef42336e7","name":"La R\u00e9daction","image":{"@type":"ImageObject","inLanguage":"fr-FR","@id":"https:\/\/realites.com.tn\/fr\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/fbe9ab25fcc82b6e660ad5648f91eadb?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/fbe9ab25fcc82b6e660ad5648f91eadb?s=96&d=mm&r=g","caption":"La R\u00e9daction"},"url":"https:\/\/realites.com.tn\/fr\/author\/realites5201\/"}]}},"jetpack_featured_media_url":"https:\/\/realites.com.tn\/fr\/wp-content\/uploads\/2024\/12\/images-4.png","jetpack_sharing_enabled":true,"views":179,"_links":{"self":[{"href":"https:\/\/realites.com.tn\/fr\/wp-json\/wp\/v2\/posts\/340663","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/realites.com.tn\/fr\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/realites.com.tn\/fr\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/realites.com.tn\/fr\/wp-json\/wp\/v2\/users\/60"}],"replies":[{"embeddable":true,"href":"https:\/\/realites.com.tn\/fr\/wp-json\/wp\/v2\/comments?post=340663"}],"version-history":[{"count":1,"href":"https:\/\/realites.com.tn\/fr\/wp-json\/wp\/v2\/posts\/340663\/revisions"}],"predecessor-version":[{"id":340688,"href":"https:\/\/realites.com.tn\/fr\/wp-json\/wp\/v2\/posts\/340663\/revisions\/340688"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/realites.com.tn\/fr\/wp-json\/wp\/v2\/media\/340664"}],"wp:attachment":[{"href":"https:\/\/realites.com.tn\/fr\/wp-json\/wp\/v2\/media?parent=340663"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/realites.com.tn\/fr\/wp-json\/wp\/v2\/categories?post=340663"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/realites.com.tn\/fr\/wp-json\/wp\/v2\/tags?post=340663"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}