Vendor

Apple

Apple news

Severity: ElevatedAction: Be aware

Chrome Beta for iOS Update

Hi everyone! We've just released Chrome Beta 156 (156.0.8078.3) for iOS; it'll become available on App Store in the next few days. You can see a partial list of the changes in the Git log . If you find a new issue, please let us know by filing a bug . Chrome Release Team Google Chrome…

Severity: ElevatedAction: Be aware

Chrome Stable for iOS Update

Hi everyone! We've just released Chrome Stable 155 (155.0.8059.24) for iOS; it'll become available on App Store in the next few hours. This release includes stability and performance improvements. You can see a full list of the changes in the Git log . If you find a new issue, please let us know by filing a bug . Chrome Release Team Google Chrome…

Severity: CriticalAction: Act nowExploitation: ExploitedCISA KEV

Apple Multiple Products Out-of-Bounds Write Vulnerability (CVE-2026-86950) is being actively exploited, CISA warns

CISA added CVE-2026-86950 (Apple Multiple Products) to its Known Exploited Vulnerabilities catalog on September 29, 2026, which means there is reliable evidence of exploitation in the wild. Apple iOS, macOS, and iPadOS contain an out-of-bounds write vulnerability in CoreGraphics that may lead to arbitrary code execution.

Why it matters

CISA lists this as exploited in the wild. Unpatched macOS and iOS & iPadOS systems are exposed to active attacks now.

Act now

Treat this as an emergency.

Severity: CriticalAction: Act nowExploitation: Exploited

Apple patches CoreGraphics zero-day flaw exploited in attacks

Apple released security updates to fix a zero-day vulnerability exploited in "extremely sophisticated" targeted attacks on iOS devices.

Why it matters

Source reporting says attackers are already exploiting this, so exposed iOS & iPadOS systems are at immediate risk.

Act now

Treat this as an emergency.

Severity: ElevatedAction: Be aware

Chrome Beta for iOS Update

Hi everyone! We've just released Chrome Beta 155 (155.0.8059.16) for iOS; it'll become available on App Store in the next few days. You can see a partial list of the changes in the Git log . If you find a new issue, please let us know by filing a bug . Chrome Release Team Google Chrome…

Severity: ElevatedAction: Be aware

Chrome Stable for iOS Update

Hi everyone! We've just released Chrome Stable 154 (154.0.8037.55) for iOS; it'll become available on App Store in the next few hours. This release includes stability and performance improvements. You can see a full list of the changes in the Git log . If you find a new issue, please let us know by filing a bug . Chrome Release Team Google Chrome…

Severity: CriticalAction: Act nowExploitation: ExploitedCISA KEV

CISA Adds One Known Exploited Vulnerability to Catalog

CISA has added one new vulnerability to its Known Exploited Vulnerabilities (KEV) Catalog , based on evidence of active exploitation. CVE-2026-7273 Zyxel GS1900 Series Switches Stack-Based Buffer Overflow Vulnerability This type of vulnerability is a frequent attack vector for malicious cyber actors and poses significant risks to the federal enterprise. Binding Operational Directive (BOD) 26-04: Prioritizing…

Why it matters

CISA lists this as exploited in the wild. Unpatched BIG-IP and Multiple Products systems are exposed to active attacks now.

Act now

Treat this as an emergency.

Recent intelligence

The latest developments from the last 30 days, newest first.

  1. Coverage

    macOS Users Targeted by Fake Zoom Installer Carrying CloudSyncD Backdoor

    Basis: Reporting by SecurityWeek

  2. Coverage

    Chrome Beta for iOS Update

    Basis: Google Chrome Releases (vendor advisory)

  3. Coverage

    Chrome Stable for iOS Update

    Basis: Google Chrome Releases (vendor advisory)

  4. Coverage

    Mobile malware warning from Ukrainian researchers includes iPhone exploit kit

    Basis: Reporting by The Record by Recorded Future News

  5. Severity raisedUpdateKEV

    UPDATE: severity raised to critical: Apple Multiple Products Out-of-Bounds Write Vulnerability (CVE-2026-86950) is being actively exploited, CISA warns

    Basis: CISA Known Exploited Vulnerabilities (government advisory)

  6. AdvisoryKEV

    Apple Multiple Products Out-of-Bounds Write Vulnerability (CVE-2026-86950) is being actively exploited, CISA warns

    Basis: CISA Known Exploited Vulnerabilities (government advisory)

  7. Added to CISA KEVCVE-2026-86950

    CVE-2026-86950 added to CISA KEV: Apple Multiple Products, Apple Multiple Products Out-of-Bounds Write Vulnerability

    Basis: CISA Known Exploited Vulnerabilities catalog

  8. Exploited

    Apple patches CoreGraphics zero-day flaw exploited in attacks

    Basis: Reporting by BleepingComputer

Actively exploited

All 95 →

Apple Multiple Products

Apple Multiple Products Out-of-Bounds Write Vulnerability

Added Sep 29, 2026Fed. due Oct 2, 2026Coverage →

Apple macOS

Apple macOS Improper Authentication Vulnerability

Added Aug 18, 2026Fed. due Aug 21, 2026

Apple Multiple Products

Apple Multiple Products Buffer Overflow Vulnerability

Added Mar 20, 2026Fed. due Apr 3, 2026

Apple Multiple Products

Apple Multiple Products Improper Locking Vulnerability

Added Mar 20, 2026Fed. due Apr 3, 2026

Apple Multiple Products

Apple Multiple Products Classic Buffer Overflow Vulnerability

Added Mar 20, 2026Fed. due Apr 3, 2026

Apple Multiple Products

Apple Multiple products Use-After-Free Vulnerability

Added Mar 5, 2026Fed. due Mar 26, 2026

Apple Multiple Products

Apple Multiple Products Integer Overflow or Wraparound Vulnerability

Added Mar 5, 2026Fed. due Mar 26, 2026

Apple iOS and iPadOS

Apple iOS and iPadOS Use-After-Free Vulnerability

Added Mar 5, 2026Fed. due Mar 26, 2026

Apple Multiple Products

Apple Multiple Buffer Overflow Vulnerability

Added Feb 12, 2026Fed. due Mar 5, 2026

Apple Multiple Products

Apple Multiple Products Use-After-Free WebKit Vulnerability

Added Dec 15, 2025Fed. due Jan 5, 2026

Apple Multiple Products

Apple Multiple Products Unspecified Vulnerability

Added Oct 20, 2025Fed. due Nov 10, 2025

Apple iOS, iPadOS, and macOS

Apple iOS, iPadOS, and macOS Out-of-Bounds Write Vulnerability

Added Aug 21, 2025Fed. due Sep 11, 2025

Apple Multiple Products

Apple Multiple Products Unspecified Vulnerability

Added Jun 16, 2025Fed. due Jul 7, 2025

Apple Multiple Products

Apple Multiple Products Memory Corruption Vulnerability

Added Apr 17, 2025Fed. due May 8, 2025

Apple Multiple Products

Apple Multiple Products Arbitrary Read and Write Vulnerability

Added Apr 17, 2025Fed. due May 8, 2025

Apple Multiple Products

Apple Multiple Products WebKit Out-of-Bounds Write Vulnerability

Added Mar 13, 2025Fed. due Apr 3, 2025

Apple iOS and iPadOS

Apple iOS and iPadOS Incorrect Authorization Vulnerability

Added Feb 12, 2025Fed. due Mar 5, 2025

Apple Multiple Products

Apple Multiple Products Use-After-Free Vulnerability

Added Jan 29, 2025Fed. due Feb 19, 2025

Apple Multiple Products

Apple Multiple Products Code Execution Vulnerability

Added Nov 21, 2024Fed. due Dec 12, 2024

Apple Multiple Products

Apple Multiple Products Cross-Site Scripting (XSS) Vulnerability

Added Nov 21, 2024Fed. due Dec 12, 2024

Products