ArmoredMobile[verified]@ArmoredMobileActive Exploitation
The Coruna iOS exploit kit reuses CVE-2023-32434 and CVE-2023-38606 and is now reported to be actively exploited in broader attacks.
Aviatrix Threat Research Center[verified]@aviatrixtrcActive Exploitation
Attackers chain CVE‑2023‑32434 and CVE‑2023‑38606 to achieve kernel‑level compromise on iOS, creating persistent C2 channels. This demonstrates that the CVEs are being actively exploited in the wild.
CybrPulse[verified]@CybrPulseActive Exploitation
The post reports that CVE-2023-32434 has led to mass exploitation of iOS devices, with 23 exploit chains now in criminal use, prompting a CISA patch deadline.
Shah Sheikh[verified]@shah_sheikhGeneral
The snippet reports that an updated kernel exploit targeting iPhones is used for CVE‑2023‑32434 and CVE‑2023‑38606 within the Coruna exploit kit, but it offers no PoC details or evidence of active exploitation.
Alfie@alfiecg_devGeneral
The statement praises ongoing exploitation of CVE‑2023‑32434 but provides no technical data, tools, or evidence of real‑world attacks.
Autumn Good@autumn_good_35Active Exploitation
The message reveals that a kernel exploit for CVE‑2023‑32434 and CVE‑2023‑38606 has been updated and deployed in the Coruna framework, having previously appeared in Operation Triangulation, indicating ongoing active exploitation.
Cyberwatcher_@cyberwatcher_Disclosure
The article announces a new iOS spyware linked to the Triangulation operation, noting zero-day CVEs CVE-2023-32434 and CVE-2023-38606 discovered by Kaspersky, but provides no further technical or operational details.