Close Menu
    What's Hot

    Beacon CRM Database Breach: Full Theft Confirmed

    August 13, 2026

    GitLab 19.2.2 Security Update: Critical Flaws Fixed

    August 13, 2026

    NESA Compliance UAE: Critical Controls

    August 13, 2026

    Chrome VPN Extensions: 737 Risky Add-ons Exposed

    August 12, 2026

    Critical SharePoint Vulnerability CVE-2026-63520 Hits 2026

    August 12, 2026
    Facebook X (Twitter) Instagram
    Friday, August 14
    CyberNexora News
    X (Twitter) Instagram LinkedIn
    • Home
    • Cyber Incidents
    • laws & government
    • Penalties
    • Learn & Protect
    • Resources
    • Contact Us
    Get Cyber Alerts
    CyberNexora News
    Home»Cyber Incidents»Powerful “Coruna” iOS Exploit Kit Targets Millions of iPhone Users

    Powerful “Coruna” iOS Exploit Kit Targets Millions of iPhone Users

    Zeel_CyberexpertBy Zeel_CyberexpertMarch 8, 20262 Mins Read
    Facebook Twitter LinkedIn Email Telegram

    Cybersecurity researchers have issued a warning about a sophisticated exploit kit capable of attacking millions of Apple iPhone devices running older versions of iOS. The toolkit, named Coruna, contains multiple exploit chains designed to compromise iPhones running versions from iOS 13 up to iOS 17.2.1.

    Security analysts from Google Threat Intelligence Group reported that the toolkit includes five complete exploit chains and more than twenty vulnerabilities that can be used together to break through Apple’s mobile security protections.

    Researchers say the most advanced exploits in the kit use complex techniques to bypass built-in protections in Apple’s operating system. These techniques allow attackers to execute malicious code on targeted devices.

    Investigators traced one of the exploit chains to a previously discovered WebKit vulnerability tracked as CVE-2024-23222. The flaw allowed attackers to run remote code on vulnerable iPhones through specially crafted web content.

    The vulnerability had earlier been patched by Apple in iOS 17.3, but researchers say the exploit toolkit continued to target devices that had not yet installed the security update.

    According to the investigation, the exploit infrastructure was hosted on malicious servers and distributed through compromised websites. Several infected websites were discovered serving hidden scripts that delivered the exploit chain only to selected iPhone users based on their geographic location.

    Security researchers believe the toolkit was initially used by surveillance-industry customers but later appeared in campaigns linked to advanced threat actors operating from Russia and China. Some attacks reportedly targeted industrial equipment platforms and cryptocurrency-related services.

    Mobile security firm iVerify described the toolkit as a major example of surveillance-grade exploit technology spreading beyond specialized vendors and becoming accessible to a wider range of cyber actors.

    Experts warn that exploit frameworks like Coruna increase the risk of large-scale attacks against mobile users if vulnerabilities remain unpatched. Users are advised to keep their iPhones updated to the latest iOS version and avoid visiting suspicious websites that may attempt to deliver malicious code.

    Related Articles

  • AWS AiTM Phishing Kit Exposed: Real-Time MFA Theft Targets AWS Users Introduction: AWS AiTM Phishing Kit — Why It Matters A...
  • OWASP Mobile Top 10-2024: Critical Mobile App Security Risks Every Security Professional Should Know Mobile applications have become a major part of modern life....
  • iPhone Hack Alert 2026: New Exploits Can Take Control of Your Device — Apple Urges Immediate Update Apple has issued an urgent security warning to iPhone users...
  • Can iPhones Really Be Hacked? The Truth About iPhone vs Android Security Many people believe that iPhones cannot be hacked, but cybersecurity...
  • Apple Beats Studio Buds Vulnerability 2026: Critical Mic Spy Flaw Patched Introduction: Apple Beats Studio Buds Vulnerability 2026 — Why It...
  • Share. Facebook Twitter LinkedIn Email Telegram

    latest news

    Beacon CRM Database Breach: Full Theft Confirmed

    August 13, 2026

    GitLab 19.2.2 Security Update: Critical Flaws Fixed

    August 13, 2026

    NESA Compliance UAE: Critical Controls

    August 13, 2026

    Chrome VPN Extensions: 737 Risky Add-ons Exposed

    August 12, 2026

    Critical SharePoint Vulnerability CVE-2026-63520 Hits 2026

    August 12, 2026

    DESC ISR Compliance Dubai: Critical Guide

    August 12, 2026

    Mozilla Firefox Signing Key: Critical Revocation

    August 11, 2026

    OpenAI Daybreak Cyber: GPT-5.6-Cyber Unveiled

    August 11, 2026

    Dubai ISR Compliance Testing: The Annual Pentest Rules Explained

    August 11, 2026

    HP ThinPro TPM Flaw: Major LUKS Encryption Risk

    August 10, 2026
    Recent Posts
    • Beacon CRM Database Breach: Full Theft Confirmed
    • GitLab 19.2.2 Security Update: Critical Flaws Fixed
    • NESA Compliance UAE: Critical Controls
    Top Posts

    Unauthorized Access Incident at Coupang Exposes Customer Data

    December 29, 2025

    Significant Data Breach at Korean Air Subcontractor Exposes Employee Records

    December 29, 2025

    Beacon CRM Database Breach: Full Theft Confirmed

    August 13, 2026
    About

    CyberNexora Blog provides trusted cybersecurity news, attack analysis, and security awareness updates. Our goal is to educate and inform readers about emerging cyber threats and best protection practices.

    Facebook X (Twitter) Instagram Pinterest LinkedIn
    Pages
    • Home
    • Cyber Incidents
    • laws & government
    • Penalties
    • Learn & Protect
    • Resources
    • Contact Us

    Get Cyber Security Alerts

    Thanks! Please check your email to confirm subscription.

    • About CyberNexora News
    • Privacy Policy
    © 2026 CyberNexora News. All Rights Reserved.

    Type above and press Enter to search. Press Esc to cancel.