logo

Apple Patches More Zero-Days Used in 'Sophisticated' Attack

ID: 269812b7-d099-513d-b57e-d31067fda046

STIX ID: report--269812b7-d099-513d-b57e-d31067fda046

Feed Name: Dark Reading

Threat Score
75/100

Date Published: 2025-12-15

Date Updated: 2026-04-21

Author: Alexander Culafi

...
...

Apple patched two WebKit zero-day vulnerabilities (CVE-2025-43529 and CVE-2025-14174), the latter of which was also linked to a Chrome/ANGLE fix coordinated with Google. Both flaws are memory-corruption issues that could enable arbitrary code execution; Apple and Google kept technical details minimal and Apple warned the bugs may have been exploited in an "extremely sophisticated" attack against targeted individuals, prompting vendor coordination and expert commentary about the high-risk nature of shared graphics-component exploits.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.