Operation Triangulation: The last (hardware) mystery
ID: 4d555285-1c2c-5cab-a5aa-f01d526847d3
STIX ID: report--4d555285-1c2c-5cab-a5aa-f01d526847d3
Feed Name: Securelist by Kaspersky
Operation Triangulation is a highly sophisticated 0‑click iMessage attack chain (disclosed December 27, 2023) that combined four zero‑day vulnerabilities to achieve remote code execution, extensive JavaScriptCore-based and kernel exploitation (including full physical memory read/write), and a hardware MMIO-based Page Protection Layer bypass on A12–A16 Apple SoCs; the attackers used undocumented GPU coprocessor CoreSight/UTT registers and a custom ECC/hash mechanism to perform DMA writes that permitted patching of protected memory and eventual spyware deployment, while Apple later mitigated the issue by adding the exploited MMIO ranges to device tree pmap-io-ranges (CVE patches), though aspects of how the hardware feature was discovered remain unresolved.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
