Apple Sends Lock Screen Alerts to Outdated iPhones Over Active Web-Based Exploits
嗯,用户让我帮忙总结这篇文章,控制在一百个字以内。首先,我需要快速浏览文章内容,抓住主要信息。 文章讲的是苹果公司向旧版iOS和iPadOS设备发送锁屏通知,提醒用户防范网络攻击,并安装更新。最近发现了新的漏洞工具包,比如Coruna和DarkSword,这些被多个威胁行为者用于传播恶意软件。苹果建议无法更新的用户启用Lockdown模式。 接下来,我需要把这些要点浓缩成一句话,不超过一百字。要确保涵盖苹果的通知、旧版系统、漏洞工具包以及Lockdown模式的建议。 最后,检查一下是否符合用户的要求:中文、简洁、不使用特定开头。看起来没问题了。 </think> 苹果向运行旧版iOS/iPadOS的设备发送锁屏通知,警告用户防范网络攻击并安装更新。近期发现新的iOS漏洞工具包(如Coruna和DarkSword)被用于传播恶意软件。苹果建议无法更新的用户启用Lockdown模式以增强防护。 2026-3-27 17:22:0 Author: thehackernews.com(查看原文) 阅读量:0 收藏

Spyware / Mobile Security

Apple is now sending Lock Screen notifications to iPhones and iPads running older versions of iOS and iPadOS to alert users of web-based attacks and urge them to install the update.

The development was first reported by MacRumors.

"Apple is aware of attacks targeting out-of-date iOS software, including the version on your iPhone. Install this critical update to protect your iPhone," the notification issued by Apple reads.

The development comes a week after Apple released a support document, asking users running older versions of iOS and iPadOS to update their devices following the discovery of new iOS exploit kits like Coruna and DarkSword.

Multiple threat actors of varied motivations have been found to leverage these kits over the past year to deliver malicious payloads when unsuspecting users visit a compromised website. While Coruna targets iOS versions between 13.0 and 17.2.1, DarkSword is designed to target iPhones running iOS versions between 18.4 and 18.7.

A new report from Kaspersky this week found that the Coruna exploit kit is an evolution of the framework used in Operation Triangulation, a sophisticated campaign that targeted iPhones via zero-click iMessage exploits. It first came to light in June 2023.

"Coruna is not a patchwork of public exploits; it is a continuously maintained evolution of the original Operation Triangulation framework," the Russian cybersecurity vendor said.

It's currently not known how the two kits found their way into the hands of several threat actors and cybercriminals, but recent research has raised the possibility of an active market for second-hand zero-day exploits.

The emergence of these kits, coupled with the leak of a newer version of DarkSword, has raised concerns that they could democratize access to exploits that were previously reserved for nation-states, potentially turning them into mass-exploitation tools. In the process, they risk transforming iPhones and iPads into a bigger attack surface than they are at present.

Users who are unable to update to a supported version are advised to consider enabling Lockdown Mode, if available, to protect against malicious web content. Lockdown Mode was introduced in 2022 and is available on devices running iOS versions 16 and later.

In a statement shared with TechCrunch, Apple said, "We are not aware of any successful mercenary spyware attacks against a Lockdown Mode-enabled Apple device."

Found this article interesting? Follow us on Google News, Twitter and LinkedIn to read more exclusive content we post.


文章来源: https://thehackernews.com/2026/03/apple-sends-lock-screen-alerts-to.html
如有侵权请联系:admin#unsafe.sh