kokumօtօ[verified]@__kokumotoActive Exploitation
CISA added five CVEs to its catalog of known exploited vulnerabilities, confirming active exploitation in the wild.
piyokango[verified]@piyokangoPatch
CISA has added five known exploited vulnerabilities to its catalog, detailing CVEs, severity levels, and providing vendor mitigation links that confirm the availability of patches or workarounds.
Machina Record[verified]@MachinaRecordActive Exploitation
The post announces that the Cisco Catalyst SD‑WAN CVEs are being actively exploited and notes that CISA has added certain older Apple CVEs to its KEV catalog.
Aviatrix Threat Research Center[verified]@aviatrixtrcActive Exploitation
The post details that the Coruna iOS exploit kit chains WebKit and kernel CVEs (CVE-2023-41974 and CVE-2021-30952) to execute zero‑click iMessage attacks and laterally exfiltrate data.
セキュリティ対策Lab[verified]@securityLab_jpActive Exploitation
CISA has added three Coruna-related iOS CVEs to its KEV list and noted that 23 attack kits target iOS 13–17.2.1, indicating that the vulnerabilities are already being exploited in the wild.
xkzDB[verified]@xkzdbPatch
CISA issued a patch directive for three iOS CVEs after confirming they were actively exploited in cyberespionage and crypto-theft campaigns using the Coruna exploit kit.
キタきつね[verified]@foxbookActive Exploitation
CISA has announced five previously known and actively exploited vulnerabilities that have been added to its catalog, highlighting the need for immediate attention.
Alfie@alfiecg_devExploit
The tweet maps four CVE identifiers to their corresponding exploit/PoC codenames (street_race, busy_schedule, dangling_join, madvm), signaling the existence and availability of named exploit tools for these vulnerabilities.