Particle.news
Download on the App Store

Apple Pushes Rare iOS 15/16 Security Updates to Block ‘Coruna’ Exploit on Older Devices

Backported patches close flaws abused for one‑click device takeovers on older Apple devices.

Overview

  • Apple released iOS and iPadOS 15.8.7 and 16.7.15 for legacy models after researchers detailed the Coruna exploit kit.
  • The 15.x updates fix one kernel and three WebKit vulnerabilities, while the 16.x update addresses a single WebKit issue.
  • Coruna enables drive‑by infections via Safari and chains multiple exploits to gain full control of a device.
  • Google’s Threat Intelligence Group and iVerify report use by operators with Russian espionage links and by a China‑based financially motivated actor, including lures such as a fake WEEX crypto exchange site.
  • Researchers document coverage across iOS 13 through at least 17.4 and note gaps closed since 17.5, while the scale of compromises and the malware’s authorship remain unresolved, with some distribution sites active until recently.