Two days before he is scheduled to give a talk about discovering and exploiting 0-day vulnerabilities in SOHO routers' firmware, security researcher Lyon Yang has released details about a number of vulnerabilities in routers made by California-based Zhone Technologies, the exploitation of some of which can result in the routers being hijacked.
A slew of vulnerabilities - some already patched and some still not - have been revealed to affect several security offerings by some of the most trusted names in the security market.
Mozilla has announced on Friday that an attacker managed to access security-sensitive information about a considerable number of (at the time) unpatched Firefox vulnerabilities, and that there is evidence that at least one of them has been exploited in attacks in the wild.
CERT/CC has issued a warning about the existence of several serious zero-day vulnerabilities affecting the popular Belkin N600 routers, and has offered advice on how users can protect themselves until Belkin comes out with fixes (they have been notified of the vulnerabilities in July).
Italian security researcher Luca Todesco has published PoC exploit code for a newly discovered zero-day privilege escalation flaw affecting OS X Yosemite (v10.10) and Mavericks (v10.9).
Reading our newsletter every Monday will keep you up-to-date with security news.
Receive a daily digest of the latest security news.