A Russian APT group known as RomCom has been exploiting two zero-day vulnerabilities to deploy backdoor malware.The first vulnerability, discovered in Firefox, allows the execution of code in the restricted context of the browser.The second vulnerability, found in Windows, enables previously authenticated attackers to run arbitrary code in the system.The majority of victims targeted by the attacks were located in Europe and North America.