Apple has moved to patch two zero-click, zero-day vulnerabilities – tracked as CVE-2023-41064 and CVE-2023-41061 – in its mobile operating system, which have allegedly been used by disgraced Israeli cyber software company NSO Group in its Pegasus spyware product sold to repressive governments.
The first, CVE-2023-41064, is a buffer overflow issue in Image I/O whereby a threat actor may achieve
Read more
Related Posts
- Progress Software Releases Service Pack for MOVEit Transfer Vulnerabilitiesa
- New high-severity Ivanti bug reported, second in a weeka
- CISA warns of hackers exploiting Ivanti EPMM vulnerabilities, after several Norwegian entities targeteda
- THREAT ADVISORY: Zero-Day Vulnerabilities Detected on WinRARa
- Second Ivanti EPMM Zero-Day Vulnerability Exploited in Targeted Attacksa