Consequence:
Software can only be good, when enough people WANT to work on it and with it along the complete life-cycle. There's a critical amount of developers/contributors/testers and (feedback providing) users.
Hence a lot of critical consumer stuff is based on popular opensource.
Also, we're entering an aera where the difference between hardware/firmware/software gets increasingly blurred. So all of this applies to more and more hardware, too.
articles don't mention mitigation methods.
what to disable in thunderbird to not be vulnerable to "obfuscated JavaScript file that is sent to the victim through emails in archive files." and prevent that "The JavaScript file drops a self-copy at “C:\Users\<Username>” location with random names like “needlereportcreepy.bat”. The bat file is then executed"?