Close Menu
TrendyFiiTrendyFii

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Dominican Republic Tourism Surge Breaks Records as Over One Million Visitors Flood Punta Cana, Santo Domingo, and Caribbean Resorts in a Massive Travel Boom

    March 9, 2026

    AI tech firm Anthropic sues over blacklisting by Pentagon | US News

    March 9, 2026

    Apple’s Foldable iPhone Just Got Its Most Convincing Leak Yet

    March 9, 2026
    Facebook X (Twitter) Instagram
    Trending
    • Dominican Republic Tourism Surge Breaks Records as Over One Million Visitors Flood Punta Cana, Santo Domingo, and Caribbean Resorts in a Massive Travel Boom
    • AI tech firm Anthropic sues over blacklisting by Pentagon | US News
    • Apple’s Foldable iPhone Just Got Its Most Convincing Leak Yet
    • Bank of America Business Advantage Unlimited card review
    • See The Galaxy, Thailand’s Abandoned Floating Hotel “Ghost Ship”
    • Oil prices latest: Labour pledge to cut energy bills in jeopardy as Middle East crisis sends fuel costs soaring
    • What You Need to Know Before You Inject Anything
    • Bluesky CEO Jay Graber Is Stepping Down
    Facebook X (Twitter) Instagram Pinterest Vimeo
    TrendyFiiTrendyFii
    • Home
    • World News
    • Travel & Culture
    • Lifestyle Tips
    • UK Updates
    • US & Canada
    • Tech Trends
      • Health & Wellness
      • Entertainment
    TrendyFiiTrendyFii
    Home » Feds take notice of iOS vulnerabilities exploited under mysterious circumstances
    Tech Trends

    Feds take notice of iOS vulnerabilities exploited under mysterious circumstances

    Trendyfii Media DeskBy Trendyfii Media DeskMarch 9, 2026No Comments3 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Close-up of an iPhone 14 Pro screen
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Coruna is also notable for its use by three distinct hacking groups. Google first detected its use in February of last year in an operation conducted by a “customer of a surveillance vendor.” The vulnerability exploited, tracked as CVE-2025-23222, had been patched 13 months earlier. In July 2025, a “suspected Russian espionage group” exploited CVE-2023-43000 in attacks planted on websites that were frequented by Ukrainian targets. Last December, when it was used by a “financially motivated threat actor from China,” Google was able to retrieve the complete exploit kit.

    “How this proliferation occurred is unclear, but suggests an active market for ‘second hand’ zero-day exploits,” Google wrote. “Beyond these identified exploits, multiple threat actors have now acquired advanced exploitation techniques that can be re-used and modified with newly identified vulnerabilities.”

    Google researchers went on to write:

    We retrieved all the obfuscated exploits, including ending payloads. Upon further analysis, we noticed an instance where the actor deployed the debug version of the exploit kit, leaving in the clear all of the exploits, including their internal code names. That’s when we learned that the exploit kit was likely named Coruna internally. In total, we collected a few hundred samples covering a total of five full iOS exploit chains. The exploit kit is able to target various iPhone models running iOS version 13.0 (released in September 2019) up to version 17.2.1 (released in December 2023).

    The 23 exploits, along with the code names and other information, are:

    TypeCodenameTargeted versions (inclusive)Fixed versionsCVE
    WebContent R/Wbuffout13 → 15.1.115.2CVE-2021-30952
    WebContent R/Wjacurutu15.2 → 15.515.6CVE-2022-48503
    WebContent R/Wbluebird15.6 → 16.1.216.2No CVE
    WebContent R/Wterrorbird16.2 → 16.5.116.6CVE-2023-43000
    WebContent R/Wcassowary16.6 → 17.2.116.7.5, 17.3CVE-2024-23222
    WebContent PAC bypassbreezy13 → 14.x?No CVE
    WebContent PAC bypassbreezy1515 → 16.2?No CVE
    WebContent PAC bypassseedbell16.3 → 16.5.1?No CVE
    WebContent PAC bypassseedbell_16_616.6 → 16.7.12?No CVE
    WebContent PAC bypassseedbell_1717 → 17.2.1?No CVE
    WebContent sandbox escapeIronLoader16.0 → 16.3.116.4.0 (<= A12)15.7.8, 16.5CVE-2023-32409
    WebContent sandbox escapeNeuronLoader16.4.0 → 16.6.1 (A13-A16)17.0No CVE
    PENeutron13.X14.2CVE-2020-27932
    PE (infoleak)Dynamo13.X14.2CVE-2020-27950
    PEPendulum14 → 14.4.x14.7No CVE
    PEPhoton14.5 → 15.7.615.7.7, 16.5.1CVE-2023-32434
    PEParallax16.4 → 16.717.0CVE-2023-41974
    PEGruber15.2 → 17.2.116.7.6, 17.3No CVE
    PPL BypassQuark13.X14.5No CVE
    PPL BypassGallium14.x15.7.8, 16.6CVE-2023-38606
    PPL BypassCarbone15.0 → 16.7.617.0No CVE
    PPL BypassSparrow17.0 → 17.316.7.6, 17.4CVE-2024-23225
    PPL BypassRocket17.1 → 17.416.7.8, 17.5CVE-2024-23296

    CISA is adding only three of the CVEs to its catalog. They are:

    • CVE-2021-30952 Apple Multiple Products Integer Overflow or Wraparound Vulnerability
    • CVE-2023-41974 Apple iOS and iPadOS Use-After-Free Vulnerability
    • CVE-2023-43000 Apple Multiple products Use-After-Free Vulnerability

    CISA is directing agencies to “apply mitigations per vendor instructions, follow applicable… guidance for cloud services, or discontinue use of the product if mitigations are unavailable.” The agency went on to warn: “These types of vulnerabilities are frequent attack vectors for malicious cyber actors and pose significant risks to the federal enterprise.”

    circumstances exploited feds iOS mysterious notice vulnerabilities
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous Article8 Best Hotel Mattresses for Five-Star Sleep in 2026, Vetted by AD
    Next Article Winter Paralympics 2026: Varvara Voronchikhina wins Russia’s first gold since 2014
    Trendyfii Media Desk
    • Website

    Related Posts

    Tech Trends

    Apple’s Foldable iPhone Just Got Its Most Convincing Leak Yet

    March 9, 2026
    Tech Trends

    Bluesky CEO Jay Graber Is Stepping Down

    March 9, 2026
    Tech Trends

    Google’s latest Pixel Watches have fallen to their lowest prices ever

    March 9, 2026
    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    Takehiro Hira to Receive THR’s Trailblazer Award at Tokyo Film Fest

    October 23, 20259 Views

    7 Trending Lifestyle Products UK Shoppers Love in 2026 ?

    February 9, 20264 Views

    Nvidia reportedly cancels partner incentive scheme to sell cards at MSRP, says YouTuber Der8auer, signalling hard times ahead for GPU prices

    January 23, 20264 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews
    World News

    Why Liverpool are feeling the effects of Trent Alexander-Arnold’s absence this season

    Trendyfii Media DeskOctober 19, 2025
    UK Updates

    The return of ‘Tescopoly’? How Britain’s biggest retailer dominates everyday life | Tesco

    Trendyfii Media DeskOctober 19, 2025
    US & Canada

    Beto O’Rourke ‘proud’ to join Austin ‘No Kings’ protest

    Trendyfii Media DeskOctober 19, 2025

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    Why Liverpool are feeling the effects of Trent Alexander-Arnold’s absence this season

    October 19, 20250 Views

    The return of ‘Tescopoly’? How Britain’s biggest retailer dominates everyday life | Tesco

    October 19, 20250 Views

    Prince Andrew latest: Prince William will ‘banish Andrew from royal life and future coronation’

    October 19, 20250 Views
    Our Picks

    Dominican Republic Tourism Surge Breaks Records as Over One Million Visitors Flood Punta Cana, Santo Domingo, and Caribbean Resorts in a Massive Travel Boom

    March 9, 2026

    AI tech firm Anthropic sues over blacklisting by Pentagon | US News

    March 9, 2026

    Apple’s Foldable iPhone Just Got Its Most Convincing Leak Yet

    March 9, 2026

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Trendyfii – Global News Platform
    Trendyfii is a global news and lifestyle platform serving readers in the United States and United Kingdom.
    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Contact us
    • Disclaimer
    • Privacy Policy
    • Terms and Conditions
    © 2026 trendyfii. Designed by Pro.

    Type above and press Enter to search. Press Esc to cancel.