
"These findings led us to conclude that this exploit kit was not patchworked but rather designed with a unified approach. We assume that it's an updated version of the same exploitation framework that was used - at least to some extent - in Operation Triangulation."
"Originally developed for cyber-espionage purposes, this framework is now being used by cybercriminals of a broader kind, placing millions of users with unpatched devices at risk."
Coruna is a sophisticated exploit kit that targets 23 vulnerabilities in iOS, including two kernel bugs previously exploited in Operation Triangulation. Kaspersky's report indicates that Coruna employs an updated version of an earlier kernel exploit, utilizing a unified exploitation framework. This framework has been adapted for broader cybercriminal use, increasing risks for millions of users with unpatched devices. The updated exploit includes enhanced version checking and compatibility with newer iOS versions and Apple processors, indicating a strategic evolution in cyber-espionage tools.
Read at SecurityWeek
Unable to calculate read time
Collection
[
|
...
]