CISA warns feds to patch iOS flaws exploited in crypto-theft attacks
ID: 0feff914-0192-54c3-bf21-79deebbf463b
STIX ID: report--0feff914-0192-54c3-bf21-79deebbf463b
Feed Name: Bleeping Computer
Threat Score
CISA ordered federal agencies to patch three iOS vulnerabilities exploited by the Coruna exploit kit, which chains up to 23 flaws (including zero-days) to achieve WebKit remote code execution and kernel privilege escalation; GTIG observed its use by both suspected state-backed groups (UNC6353) and financially motivated actors (UNC6691) to conduct espionage and crypto-theft, though mitigations and recent iOS versions reduce exposure.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
