New iPhone Exploit Uses Four Zero-Days
ID: 6ea73826-f1cf-539f-bd81-6ce42ee5efcc
STIX ID: report--6ea73826-f1cf-539f-bd81-6ce42ee5efcc
Feed Name: Schneier on Security
Threat Score
Kaspersky disclosed "Operation Triangulation," a multi-year zero-click iMessage campaign that chained four zero-day vulnerabilities (multiple CVEs) and an undocumented Apple hardware feature to bypass hardware memory protections (affecting devices with M1/M2), achieve kernel-level control, and load spyware on targeted iPhones, with sophisticated multi-stage JavaScript and Safari exploits and post-exploitation cleanup.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
