CVE-2023-42916
published 2023-11-30CVE-2023-42916: An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 17.1.2 and iPadOS 17.1.2, macOS Sonoma 14.1.2, Safari 17.1.2…
PriorityP179medium6.5CVSS 3.1
AVNACLPRNUIRSUCHINAN
KEVITW
CISA Known Exploited Vulnerabilitydue 2023-12-25
Exploited in the wild
EPSS
17.82%
96.8th percentile
An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 17.1.2 and iPadOS 17.1.2, macOS Sonoma 14.1.2, Safari 17.1.2. Processing web content may disclose sensitive information. Apple is aware of a report that this issue may have been exploited against versions of iOS before iOS 16.7.1.
Affected
25 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | ios_15.8.1_and_ipados | — | — |
| apple | ios_16.7.3_and_ipados | — | — |
| apple | ios_17.1.2_and_ipados | — | — |
| apple | ios_and_ipados | >= unspecified < 17.1 | 17.1 |
| apple | ipados | < 15.8.1 | 15.8.1 |
| apple | ipados | >= 16.0 < 16.7.3 | 16.7.3 |
| apple | ipados | >= 17.0 < 17.1.2 | 17.1.2 |
| apple | iphone_os | < 15.8.1 | 15.8.1 |
| apple | iphone_os | >= 16.0 < 16.7.3 | 16.7.3 |
| apple | iphone_os | >= 17.0 < 17.1.2 | 17.1.2 |
| apple | macos | >= 14.0 < 14.1.2 | 14.1.2 |
| apple | macos | >= unspecified < 14.1 | 14.1 |
| apple | macos_sonoma | — | — |
| apple | safari | < 17.1.2 | 17.1.2 |
| apple | safari | — | — |
| apple | safari | >= unspecified < 17.1 | 17.1 |
| apple | tvos | — | — |
| apple | watchos | — | — |
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | webkit2gtk | < webkit2gtk 2.42.3-1~deb12u1 (bookworm) | webkit2gtk 2.42.3-1~deb12u1 (bookworm) |
| debian | wpewebkit | < webkit2gtk 2.42.3-1~deb12u1 (bookworm) | webkit2gtk 2.42.3-1~deb12u1 (bookworm) |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
| webkitgtk | webkitgtk | < 2.42.3 | 2.42.3 |
Detection & IOCsextracted from sources · hover to see the quote
- →CVE-2023-42916 is a WebKit out-of-bounds read triggered by processing web content; exploitation was observed against iOS versions before iOS 16.7.1, meaning any device on iOS < 16.7.1 visiting attacker-controlled web content is a target ↗
- →CVE-2023-42916 is co-exploited alongside CVE-2023-42917 (WebKit memory corruption / arbitrary code execution); detections should consider both vulnerabilities appearing together in the same attack chain ↗
- →Exploitation of CVE-2023-42916 is consistent with state-sponsored spyware attack patterns targeting high-risk individuals (journalists, dissidents, opposition politicians) via WebKit-based browsers on iOS ↗
- →Exploitation of CVE-2023-42916 was confirmed against iOS versions predating iOS 16.7.1 (released Oct. 10, 2023); threat hunting should focus on devices that had not applied the October 2023 patch ↗
- ·Apple has not publicly disclosed technical details, exploit samples, or attribution for CVE-2023-42916 exploitation; no hashes, domains, IPs, or network indicators are available from the provided sources ↗
- ·Patches were initially released for newer devices in November 2023 (iOS 17.1.2 / macOS Sonoma 14.1.2 / Safari 17.1.2) and later backported in January 2024 to older devices (iOS 16.7.6 / iPadOS 16.7.6); detection scope should cover both patch waves ↗
CVSS provenance
nvdv3.16.5MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
osv6.5MEDIUM
vulncheck6.5MEDIUM
cisa6.5MEDIUM
vendor_oracle7.5HIGH
vendor_debian6.5MEDIUM
vendor_redhat6.5MEDIUM
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Apple
CVE-2023-42916: iOS 15.8.1 and iPadOS 15.8.1
vendor_apple·2024-01-22·CVSS 6.5
CVE-2023-42916 [MEDIUM] CVE-2023-42916: iOS 15.8.1 and iPadOS 15.8.1
Apple Security Update: About the security content of iOS 15.8.1 and iPadOS 15.8.1
Product: iOS 15.8.1 and iPadOS
Version: 15.8.1
CVE: CVE-2023-42916
Component: WebKit
Impact: Processing web content may disclose sensitive information. Apple is aware of a report that this issue may have been exploited against versions of iOS before iOS 16.7.1.
Description: An out-of-bounds read was addressed with improved input validation.
Apple
CVE-2023-42916: tvOS 17.2
vendor_apple·2023-12-11·CVSS 6.5
CVE-2023-42916 [MEDIUM] CVE-2023-42916: tvOS 17.2
Apple Security Update: About the security content of tvOS 17.2
Product: tvOS
Version: 17.2
CVE: CVE-2023-42916
Component: WebKit
Impact: Processing web content may disclose sensitive information. Apple is aware of a report that this issue may have been exploited against versions of iOS before iOS 16.7.1.
Description: An out-of-bounds read was addressed with improved input validation.
Ubuntu
WebKitGTK vulnerabilities
vendor_ubuntu·2023-12-11
CVE-2023-42917 WebKitGTK vulnerabilities
Title: WebKitGTK vulnerabilities
Summary: Several security issues were fixed in WebKitGTK.
Several security issues were discovered in the WebKitGTK Web and JavaScript
engines. If a user were tricked into viewing a malicious website, a remote
attacker could exploit a variety of issues related to web browser security,
including cross-site scripting attacks, denial of service attacks, and
arbitrary code execution.
Instructions: This update uses a new upstream release, which includes additional bug
fixes. After a standard system update you need to restart any applications
that use WebKitGTK, such as Epiphany, to make all the necessary changes.
Apple
CVE-2023-42916: iOS 16.7.3 and iPadOS 16.7.3
vendor_apple·2023-12-11·CVSS 6.5
CVE-2023-42916 [MEDIUM] CVE-2023-42916: iOS 16.7.3 and iPadOS 16.7.3
Apple Security Update: About the security content of iOS 16.7.3 and iPadOS 16.7.3
Product: iOS 16.7.3 and iPadOS
Version: 16.7.3
CVE: CVE-2023-42916
Component: WebKit
Impact: Processing web content may disclose sensitive information. Apple is aware of a report that this issue may have been exploited against versions of iOS before iOS 16.7.1.
Description: An out-of-bounds read was addressed with improved input validation.
Apple
CVE-2023-42916: watchOS 10.2
vendor_apple·2023-12-11·CVSS 6.5
CVE-2023-42916 [MEDIUM] CVE-2023-42916: watchOS 10.2
Apple Security Update: About the security content of watchOS 10.2
Product: watchOS
Version: 10.2
CVE: CVE-2023-42916
Component: WebKit
Impact: Processing web content may disclose sensitive information. Apple is aware of a report that this issue may have been exploited against versions of iOS before iOS 16.7.1.
Description: An out-of-bounds read was addressed with improved input validation.
CISA
Apple Multiple Products WebKit Out-of-Bounds Read Vulnerability
cisa·2023-12-04·CVSS 6.5
CVE-2023-42916 [MEDIUM] CWE-125 Apple Multiple Products WebKit Out-of-Bounds Read Vulnerability
Vulnerability: Apple Multiple Products WebKit Out-of-Bounds Read Vulnerability
Affected: Apple Multiple Products
Apple iOS, iPadOS, macOS, and Safari WebKit contain an out-of-bounds read vulnerability that may disclose sensitive information when processing maliciously crafted web content. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.
Required Action: Apply remediations or mitigations per vendor instructions or discontinue use of the product if remediation or mitigations are unavailable.
Notes: https://support.apple.com/en-us/HT214031, https://support.apple.com/en-us/HT214032, https://support.apple.com/en-us/HT214033 ; https://nvd.nist.gov/vuln/detail/CVE-2023-42916
Red Hat
webkitgtk: Out-of-bounds read leads to sensitive data leak
vendor_redhat·2023-12-01·CVSS 6.5
CVE-2023-42916 [MEDIUM] CWE-20 webkitgtk: Out-of-bounds read leads to sensitive data leak
webkitgtk: Out-of-bounds read leads to sensitive data leak
An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 17.1.2 and iPadOS 17.1.2, macOS Sonoma 14.1.2, Safari 17.1.2. Processing web content may disclose sensitive information. Apple is aware of a report that this issue may have been exploited against versions of iOS before iOS 16.7.1.
A flaw was found in WebKitGTK. Processing malicious web content may cause an out-of-bounds read due to an improper input validation, resulting in sensitive content leaking.
Statement: The WebKitGTK package versions, as shipped with Red Hat Enterprise 8 and 9, are not affected by this vulnerability. This flaw is related to the JIT code, which is currently disabled by default on both Red Hat Enterprise Linux ve
Apple
CVE-2023-42916: iOS 17.1.2 and iPadOS 17.1.2
vendor_apple·2023-11-30·CVSS 6.5
CVE-2023-42916 [MEDIUM] CVE-2023-42916: iOS 17.1.2 and iPadOS 17.1.2
Apple Security Update: About the security content of iOS 17.1.2 and iPadOS 17.1.2
Product: iOS 17.1.2 and iPadOS
Version: 17.1.2
CVE: CVE-2023-42916
Component: WebKit
Impact: Processing web content may disclose sensitive information. Apple is aware of a report that this issue may have been exploited against versions of iOS before iOS 16.7.1.
Description: An out-of-bounds read was addressed with improved input validation.
Apple
CVE-2023-42916: Safari 17.1.2
vendor_apple·2023-11-30·CVSS 6.5
CVE-2023-42916 [MEDIUM] CVE-2023-42916: Safari 17.1.2
Apple Security Update: About the security content of Safari 17.1.2
Product: Safari
Version: 17.1.2
CVE: CVE-2023-42916
Component: WebKit
Impact: Processing web content may disclose sensitive information. Apple is aware of a report that this issue may have been exploited against versions of iOS before iOS 16.7.1.
Description: An out-of-bounds read was addressed with improved input validation.
Apple
CVE-2023-42916: macOS Sonoma 14.1.2
vendor_apple·2023-11-30·CVSS 6.5
CVE-2023-42916 [MEDIUM] CVE-2023-42916: macOS Sonoma 14.1.2
Apple Security Update: About the security content of macOS Sonoma 14.1.2
Product: macOS Sonoma
Version: 14.1.2
CVE: CVE-2023-42916
Component: WebKit
Impact: Processing web content may disclose sensitive information. Apple is aware of a report that this issue may have been exploited against versions of iOS before iOS 16.7.1.
Description: An out-of-bounds read was addressed with improved input validation.
Oracle
Oracle Oracle Virtualization Risk Matrix: Core (cURL) — CVE-2022-42916
vendor_oracle·2023-04-15·CVSS 7.5
CVE-2022-42916 [HIGH] Oracle Oracle Virtualization Risk Matrix: Core (cURL) — CVE-2022-42916
Oracle Oracle Virtualization Risk Matrix: Core (cURL) vulnerability
CVE: CVE-2022-42916
CVSS: 7.5
Protocol: HTTP
Remote exploit: Yes
Affected versions: Network
Advisory: cpuapr2023 (APR 2023)
Debian
CVE-2023-42916: webkit2gtk - An out-of-bounds read was addressed with improved input validation. This issue i...
vendor_debian·2023·CVSS 6.5
CVE-2023-42916 [MEDIUM] CVE-2023-42916: webkit2gtk - An out-of-bounds read was addressed with improved input validation. This issue i...
An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 17.1.2 and iPadOS 17.1.2, macOS Sonoma 14.1.2, Safari 17.1.2. Processing web content may disclose sensitive information. Apple is aware of a report that this issue may have been exploited against versions of iOS before iOS 16.7.1.
Scope: local
bookworm: resolved (fixed in 2.42.3-1~deb12u1)
bullseye: resolved (fixed in 2.42.3-1~deb11u1)
forky: resolved (fixed in 2.42.3-1)
sid: resolved (fixed in 2.42.3-1)
trixie: resolved (fixed in 2.42.3-1)
GHSA
GHSA-95hw-v8fq-666q: An out-of-bounds read was addressed with improved input validation
ghsa_unreviewed·2023-12-01
CVE-2023-42916 [MEDIUM] CWE-125 GHSA-95hw-v8fq-666q: An out-of-bounds read was addressed with improved input validation
An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 17.1.2 and iPadOS 17.1.2, macOS Sonoma 14.1.2, Safari 17.1.2. Processing web content may disclose sensitive information. Apple is aware of a report that this issue may have been exploited against versions of iOS before iOS 16.7.1.
OSV
CVE-2023-42916: An out-of-bounds read was addressed with improved input validation
osv·2023-11-30·CVSS 6.5
CVE-2023-42916 [MEDIUM] CVE-2023-42916: An out-of-bounds read was addressed with improved input validation
An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 17.1.2 and iPadOS 17.1.2, macOS Sonoma 14.1.2, Safari 17.1.2. Processing web content may disclose sensitive information. Apple is aware of a report that this issue may have been exploited against versions of iOS before iOS 16.7.1.
VulnCheck
Apple Multiple Products WebKit Out-of-Bounds Read Vulnerability
vulncheck·2023·CVSS 6.5
CVE-2023-42916 [MEDIUM] CWE-125 Apple Multiple Products WebKit Out-of-Bounds Read Vulnerability
Apple Multiple Products WebKit Out-of-Bounds Read Vulnerability
Apple iOS, iPadOS, macOS, and Safari WebKit contain an out-of-bounds read vulnerability that may disclose sensitive information when processing maliciously crafted web content. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.
Affected: Apple Multiple Products
Required Action: Apply remediations or mitigations per vendor instructions or discontinue use of the product if remediation or mitigations are unavailable.
Exploitation References: https://docs.google.com/spreadsheets/d/1lkNJ0uQwbeC1ZTRrxdtuPLCIl7mlUreoKfSIgajnSyY/edit; https://support.apple.com/en-us/HT214031; https://www.cisa.gov/sites/default/file
No detection rules found.
No public exploits indexed.
Bleepingcomputer
Apple fixes WebKit zero-day exploited in ‘extremely sophisticated’ attacks
blogs_bleepingcomputer·2025-03-11·CVSS 7.8
CVE-2025-24201 [HIGH] Apple fixes WebKit zero-day exploited in ‘extremely sophisticated’ attacks
## Apple fixes WebKit zero-day exploited in ‘extremely sophisticated’ attacks
## Sergiu Gatlan
Apple said attackers can exploit the CVE-2025-24201 vulnerability using maliciously crafted web content to break out of the Web Content sandbox.
The company has fixed this out-of-bounds write issue with improved checks to prevent unauthorized actions in iOS 18.3.2, iPadOS 18.3.2 , macOS Sequoia 15.3.2 , visionOS 2.3.2 , and Safari 18.3.1 .
The list of devices impacted by this zero-day is quite extensive, as the bug affects older and newer models, including:
iPhone XS and later,
iPad Pro 13-inch, iPad Pro 12.9-inch 3rd generation and later, iPad Pro 11-inch 1st generation and later, iPad Air 3rd generation and later, iPad 7th generation and later, and iPad mini 5th generation and later
Macs
Bleepingcomputer
Apple fixes zero-day exploited in 'extremely sophisticated' attacks
blogs_bleepingcomputer·2025-02-10·CVSS 7.8
[HIGH] Apple fixes zero-day exploited in 'extremely sophisticated' attacks
## Apple fixes zero-day exploited in 'extremely sophisticated' attacks
## Sergiu Gatlan
USB Restricted Mode is a security feature ( introduced almost seven years ago in iOS 11.4.1) that blocks USB accessories from creating a data connection if the device has been locked for over an hour. This feature is designed to block forensic software like Graykey and Cellebrite (commonly used by law enforcement) from extracting data from locked iOS devices.
In November, Apple introduced another security feature (dubbed "inactivity reboot") that automatically restarts iPhones after long idle times to re-encrypt data and make it harder to extract by forensic software.
The zero-day vulnerability (tracked as CVE-2025-24200 and reported by Citizen Lab's Bill Marczak) patched today by Apple is an author
Bleepingcomputer
Apple fixes this year’s first actively exploited zero-day bug
blogs_bleepingcomputer·2025-01-27·CVSS 6.5
CVE-2024-23222 [MEDIUM] Apple fixes this year’s first actively exploited zero-day bug
## Apple fixes this year’s first actively exploited zero-day bug
## Sergiu Gatlan
According to the company's official documentation , Core Media "defines the media pipeline used by AVFoundation and other high-level media frameworks found on Apple platforms."
Apple has fixed CVE-2024-23222 with improved memory management in iOS 18.3, iPadOS 18.3, macOS Sequoia 15.3, watchOS 11.3, visionOS 2.3, and tvOS 18.3.
The list of devices impacted by this zero-day is quite extensive, as the bug affects older and newer models, including:
iPhone XS and later,
iPad Pro 13-inch, iPad Pro 12.9-inch 3rd generation and later, iPad Pro 11-inch 1st generation and later, iPad Air 3rd generation and later, iPad 7th generation and later, and iPad mini 5th generation and later
macOS Sequoia
Apple Watch Ser
Bleepingcomputer
Apple fixes two zero-days used in attacks on Intel-based Macs
blogs_bleepingcomputer·2024-11-19·CVSS 8.8
CVE-2024-44308 [HIGH] Apple fixes two zero-days used in attacks on Intel-based Macs
## Apple fixes two zero-days used in attacks on Intel-based Macs
## Lawrence Abrams
The JavaScriptCore CVE-2024-44308 flaw allows attackers to achieve remote code execution through maliciously crafted web content. The other flaw, CVE-2024-44309, allows cross-site scripting (CSS) attacks.
The company says it addressed the security flaws in macOS Sequoia 15.1.1 .
As the same components are found in other Apple operating systems, it was also fixed in iOS 17.7.2 and iPadOS 17.7.2 , iOS 18.1.1 and iPadOS 18.1.1 , and visionOS 2.1.1 .
While Apple says both flaws were discovered by Clément Lecigne and Benoît Sevens of Google's Threat Analysis Group, the company has not provided further details on how they were exploited.
BleepingComputer contacted Google to learn how the flaws were exploite
Bleepingcomputer
Apple backports fix for zero-day exploited in attacks to older iPhones
blogs_bleepingcomputer·2024-05-13·CVSS 6.5
CVE-2024-23296 [MEDIUM] Apple backports fix for zero-day exploited in attacks to older iPhones
## Apple backports fix for zero-day exploited in attacks to older iPhones
## Sergiu Gatlan
On March 5th, the company addressed the zero-day vulnerability (tracked as CVE-2024-23296) for newer iPhone, iPad, and Mac models.
Today, Apple backported the March security updates to address this security flaw on iOS 16.7.8, iPadOS 16.7.8 , and macOS Ventura 13.6.7 with improved input validation.
The list of devices patched today includes iPhone 8, iPhone 8 Plus, iPhone X, iPad 5th generation, iPad Pro 9.7-inch, and iPad Pro 12.9-inch 1st generation.
## Three zero-days exploited in attacks patched in 2024
Apple has yet to disclose who disclosed the zero-day or whether it was discovered internally, and it has provided no information on the nature of the attacks exploiting it in the wild.
Even
Bleepingcomputer
CISA warns of patched iPhone kernel bug now exploited in attacks
blogs_bleepingcomputer·2024-01-31·CVSS 7.0
[HIGH] CISA warns of patched iPhone kernel bug now exploited in attacks
## CISA warns of patched iPhone kernel bug now exploited in attacks
## Sergiu Gatlan
"An attacker with arbitrary read and write capability may be able to bypass Pointer Authentication," the company revealed this month.
"Apple is aware of a report that this issue may have been exploited against versions of iOS released before iOS 15.7.1."
This improper authentication security vulnerability enables attackers to bypass Pointer Authentication, a security feature designed to block attacks trying to exploit memory corruption bugs.
Apple addressed the flaw with improved checks on devices running iOS 16.2 or later, iPadOS 16.2 or later, macOS Ventura or newer, tvOS 16.2 or higher, and watchOS 9.2 or later.
The list of devices impacted by this actively exploited flaw is quite extensive and it
Talos
Why is the cost of cyber insurance rising?
blogs_talos·2024-01-25
Why is the cost of cyber insurance rising?
## Why is the cost of cyber insurance rising?
I just bought an electric car last week, so I’ve been shopping for new car insurance policies that could offer me a discount for ditching gas.
We’re all familiar with the boring process of entering the same information 10 times over into 10 different companies’ websites trying to see who comes out the cheapest and offers the best bundles, discounts or deals.
Unfortunately, with cybersecurity insurance, there are no bundles or “Personal Price Plans” to enroll in, and costs are rising.
This is nothing to say about whether an organization should get cyber insurance . That is 100 percent their decision to make, and every case is going to be different. But for companies who are interested in getting these types of policies to be best prepared to
Talos
Why is the cost of cyber insurance rising?
blogs_talos·2024-01-25
Why is the cost of cyber insurance rising?
I just bought an electric car last week, so I’ve been shopping for new car insurance policies that could offer me a discount for ditching gas.
We’re all familiar with the boring process of entering the same information 10 times over into 10 different companies’ websites trying to see who comes out the cheapest and offers the best bundles, discounts or deals.
Unfortunately, with cybersecurity insurance, there are no bundles or “Personal Price Plans” to enroll in, and costs are rising.
This is nothing to say about whether an organization should get cyber insurance. That is 100 percent their decision to make, and every case is going to be different. But for companies who are interested in getting these types of policies to be best prepared to recover from and deal with a potential security
Bleepingcomputer
Apple fixes first zero-day bug exploited in attacks this year
blogs_bleepingcomputer·2024-01-22·CVSS 8.8
[HIGH] Apple fixes first zero-day bug exploited in attacks this year
## Apple fixes first zero-day bug exploited in attacks this year
## Sergiu Gatlan
"Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been exploited," Apple said today.
The company has yet to attribute the discovery of this security vulnerability to a security researcher. Although the company disclosed that it's aware of in-the-wild exploitation, it has yet to publish further details regarding these attacks.
Apple addressed CVE-2024-23222 with improved checks in iOS 16.7.5 and later, iPadOS 16.7.5 and later, and macOS Monterey 12.7.3 and higher, as well as on tvOS 17.3 and later.
The complete list of devices impacted by this WebKit zero-day is quite extensive, as the bug affects older and newer models, i
Bleepingcomputer
Apple emergency updates fix recent zero-days on older iPhones
blogs_bleepingcomputer·2023-12-11·CVSS 6.5
[MEDIUM] Apple emergency updates fix recent zero-days on older iPhones
## Apple emergency updates fix recent zero-days on older iPhones
## Sergiu Gatlan
They can let attackers obtain access to sensitive data through and execute arbitrary code using maliciously crafted webpages designed to exploit out-of-bounds and memory corruption bugs on unpatched devices.
Today, Apple addressed the zero-days in iOS 16.7.3, iPadOS 16.7.3 , tvOS 17.2 , and watchOS 10.2 with improved input validation and locking.
The company says the bugs are now also patched on the following list of devices:
iPhone 8 and later, iPad Pro (all models), iPad Air 3rd generation and later, iPad 5th generation and later, and iPad mini 5th generation and later
Apple TV HD and Apple TV 4K (all models)
Apple Watch Series 4 and later
Clément Lecigne, a security researcher from Google's Threat
Talos
Cybersecurity considerations to have when shopping for holiday gifts
blogs_talos·2023-12-07
Cybersecurity considerations to have when shopping for holiday gifts
## Cybersecurity considerations to have when shopping for holiday gifts
As I wrote about last week, there are holiday shopping-related scams already popping up all over the place.
But another aspect of security that many shoppers don’t consider this time of year is the security of the products they’re buying, even through a legitimate online marketplace.
This is a glaring issue with home security cameras and Wi-Fi-connected doorbells, but I can’t imagine these are particularly popular holiday gifts. With virtually everything being connected to the internet somehow these days, everything is a potential security risk if you’re buying a new piece of technology.
Take smartwatches, for example. Apple Watches and Samsung Galaxy watches are always popular on everyone’s wishlists this time of
Talos
Cybersecurity considerations to have when shopping for holiday gifts
blogs_talos·2023-12-07
Cybersecurity considerations to have when shopping for holiday gifts
As I wrote about last week, there are holiday shopping-related scams already popping up all over the place.
But another aspect of security that many shoppers don’t consider this time of year is the security of the products they’re buying, even through a legitimate online marketplace.
This is a glaring issue with home security cameras and Wi-Fi-connected doorbells, but I can’t imagine these are particularly popular holiday gifts. With virtually everything being connected to the internet somehow these days, everything is a potential security risk if you’re buying a new piece of technology.
Take smartwatches, for example. Apple Watches and Samsung Galaxy watches are always popular on everyone’s wishlists this time of year because they’re high-priced items you normally wouldn’t buy for your
Checkpoint
4th December – Threat Intelligence Report
blogs_checkpoint·2023-12-04·CVSS 7.5
CVE-2023-4966 [HIGH] 4th December – Threat Intelligence Report
Latest Publications
CPR Podcast Channel
AI Research
Web 3.0 Security
Intelligence Reports
ThreatCloud AI
Threat Intelligence & Research
Zero Day Protection
Sandblast File Analysis
About Us
SUBSCRIBE
2026
2025
2024
2023
2022
2021
2020
2019
2018
2017
2016
## 4th December – Threat Intelligence Report
For the latest discoveries in cyber research for the week of 4th December, please download our Threat_Intelligence Bulletin .
TOP ATTACKS AND BREACHES
Check Point Research provides highlights about Cyber Av3ngers group activity, which has taken responsibility on defacing workstations at Pennsylvania’s Aliquippa municipal water authority. Following the attack, CISA has published an advisory about this hacktivists group which is affiliated to Iranian Revolutionary Guard C
Bleepingcomputer
Apple fixes two new iOS zero-days in emergency updates
blogs_bleepingcomputer·2023-11-30·CVSS 8.6
[HIGH] Apple fixes two new iOS zero-days in emergency updates
## Apple fixes two new iOS zero-days in emergency updates
## Sergiu Gatlan
The company says it addressed the security flaws for devices running iOS 17.1.2, iPadOS 17.1.2 , macOS Sonoma 14.1.2 , and Safari 17.1.2 with improved input validation and locking.
The list of impacted Apple devices is quite extensive, and it includes:
iPhone XS and later
iPad Pro 12.9-inch 2nd generation and later, iPad Pro 10.5-inch, iPad Pro 11-inch 1st generation and later, iPad Air 3rd generation and later, iPad 6th generation and later, and iPad mini 5th generation and later
Macs running macOS Monterey, Ventura, Sonoma
Security researcher Clément Lecigne of Google's Threat Analysis Group (TAG) found and reported both zero-days.
While Apple has not released information regarding ongoing exploitation in
Greynoiseio
Storm Watch
blogs_greynoiseio
Storm Watch
CVE Disclosure Early Warning Get an early warning when traffic spikes indicate a high likelihood of new disclosures
Compromised Asset Detection Find out immediately if an asset communicates with a malicious IP address
Vulnerability Prioritization Get real-time insight into active exploitation trends to better understand risk and severity
SOC Efficiency Filter out noisy, low priority and false-positive alerts from mass internet scanners
Incident Investigation Add context to incidents to speed the determinations of scope and timelines
Threat Hunting Quickly identify anomalous behavior and enrich your threat hunting campaigns
Why GreyNoise
CVE Disclosure Early Warning Get an early warning when traffic spikes indicate a high likelihood of new disclosures
Compromised Asset Detection Fin
http://seclists.org/fulldisclosure/2023/Dec/12http://seclists.org/fulldisclosure/2023/Dec/13http://seclists.org/fulldisclosure/2023/Dec/3http://seclists.org/fulldisclosure/2023/Dec/4http://seclists.org/fulldisclosure/2023/Dec/5http://seclists.org/fulldisclosure/2023/Dec/8http://seclists.org/fulldisclosure/2024/Jan/35http://www.openwall.com/lists/oss-security/2023/12/05/1https://lists.fedoraproject.org/archives/list/[email protected]/message/AD2KIHHCUBQC2YYH3FJWAHI5BG3QETOH/https://lists.fedoraproject.org/archives/list/[email protected]/message/P5LQS6VEI7VIZNC7QGQ62EOV45R5RJIR/https://security.gentoo.org/glsa/202401-04https://support.apple.com/en-us/HT214031https://support.apple.com/en-us/HT214032https://support.apple.com/en-us/HT214033https://support.apple.com/kb/HT214033https://support.apple.com/kb/HT214034https://support.apple.com/kb/HT214062https://www.debian.org/security/2023/dsa-5575http://seclists.org/fulldisclosure/2023/Dec/12http://seclists.org/fulldisclosure/2023/Dec/13http://seclists.org/fulldisclosure/2023/Dec/3http://seclists.org/fulldisclosure/2023/Dec/4http://seclists.org/fulldisclosure/2023/Dec/5http://seclists.org/fulldisclosure/2023/Dec/8http://seclists.org/fulldisclosure/2024/Jan/35http://www.openwall.com/lists/oss-security/2023/12/05/1https://lists.fedoraproject.org/archives/list/[email protected]/message/AD2KIHHCUBQC2YYH3FJWAHI5BG3QETOH/https://lists.fedoraproject.org/archives/list/[email protected]/message/P5LQS6VEI7VIZNC7QGQ62EOV45R5RJIR/https://security.gentoo.org/glsa/202401-04https://support.apple.com/en-us/HT214031https://support.apple.com/en-us/HT214032https://support.apple.com/en-us/HT214033https://support.apple.com/kb/HT214033https://support.apple.com/kb/HT214034https://support.apple.com/kb/HT214062https://www.debian.org/security/2023/dsa-5575https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2023-42916
2023-11-30
Published
2023-12-04
Added to CISA KEV
Exploited in the wild