Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

Apple

20 articles

SentinelOne Blog vendor Apple 9h ago

The Good, the Bad and the Ugly in Cybersecurity – Week 31

Police flag 4,000 URLs to disrupt The Com, theft victims sue Apple over a $1.8M wallet scam, and OpenAI and Anthropic models reach real systems in cyber tests.

SentinelOne Blog → Details

SC Media general Apple Amazon SAP 11h ago

Amazon attributes axios, debug, chalk NPM attacks to DPRK’s Sapphire Sleet

Amazon linked the campaigns through overlapping C2 indicators, TTPs and code.

SC Media → Details

Unit 42 research Apple 12h ago

The Xcode Assassin Returns: A Deep Dive Into the Latest XCSSET Version

Analysis of XCSSET v40 reveals a macOS malware targeting developers via Xcode. Unit 42 used advanced pattern matching and AI to decode its logic.

Unit 42 → Details

GBHackers general Apple 13h ago

ClickFix Campaign Uses EtherHiding to Hide Malware and Exposes DPRK Wallet Trail

ClickFix-style fake macOS updates are now being weaponized with EtherHiding-backed command‑and‑control and a DPRK-linked crypto laundering network, turning a...

GBHackers → Details

Infosecurity Magazine general Apple Amazon 13h ago

AWS Blames North Korean Group for Axios and Other npm Supply Chain Attacks

AWS has linked North Korea to the axios campaign to other attacks on npm libraries

T1195

Infosecurity Magazine → Details

The Hacker News general Apple 1d ago

DPRK-Linked macOS Malvertising Uses Fake Updates to Deliver Crypto-Stealing Malware

Threat actors with ties to North Korea have been attributed to a sophisticated macOS malvertising campaign that involves redirecting users to fake web pages ...

T1189

The Hacker News → Details

GBHackers general Apple Amazon 1d ago

North Korean Hackers Compromise Popular npm Packages to Target Developer Environments

North Korea–linked operators have quietly turned popular npm packages into a high‑volume access vector for developer and build environments, chaining multipl...

GBHackers → Details

Cyberscoop general Apple Amazon Intel 2d ago

A little-known npm package was North Korea’s warm-up act for the axios hack

Amazon's threat intelligence team traced domain records from the open-source software hack to a smaller, earlier compromise by the same North Korean group. T...

Cyberscoop → Details

Cisco Advisories advisories Apple Cisco 2d ago

Cisco Advance Notification for Publication of August 5, 2026, Security Advisories

On August 5, 2026, the Cisco Product Security Incident Response Team (PSIRT) will publish advisories to disclose security vulnerability information along wit...

Cisco Advisories → Details

GBHackers general Apple 2d ago

macOS ClickFix Attacks Use Fake CAPTCHAs to Deploy Atomic Stealer and Hijack Crypto Wallets

macOS users are facing a new, highly polished ClickFix campaign that abuses fake CAPTCHAs to execute Terminal commands, silently deploy Atomic macOS Stealer ...

T1204

GBHackers → Details

CSO Online enterprise Apple 2d ago

It’s easier to steal cargo than toothpaste

Our cybersecurity world can get quite interesting and even close to science fiction sometimes. No, it’s not AI this time, but something movie-worthy neverthe...

CSO Online → Details

SANS ISC advisories Apple 2d ago

Apple Patches Everything (July 2026), (Wed, Jul 29th)

I am a bit late with this summary, but this week Apple released updates to all its operating systems and Safari. The Safari update, as usual, targets macOS p...

SANS ISC → Details

Zero Day Initiative advisories Apple 2d ago

ZDI-26-494: Apple macOS USD File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Apple macOS. Interaction with the USD library is required t...

T1190 1 IOC

Zero Day Initiative → Details

Zero Day Initiative advisories Apple 2d ago

ZDI-26-493: Apple macOS USD File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Apple macOS. Interaction with the USD library is required t...

T1190 1 IOC

Zero Day Initiative → Details

Zero Day Initiative advisories Apple 2d ago

ZDI-26-492: Apple macOS ImageIO Numeric Truncation Remote Code Execution Vulnerability

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Apple macOS. Interaction with the ImageIO library is requir...

T1190 1 IOC

Zero Day Initiative → Details

Zero Day Initiative advisories Apple 2d ago

ZDI-26-491: Apple macOS CoreAudio Out-Of-Bounds Write Remote Code Execution Vulnerability

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Apple macOS. User interaction is required to exploit this v...

T1190 1 IOC

Zero Day Initiative → Details

SC Media general Apple 3d ago

Define a Minimum Viable Business for disaster recovery -- before the next incident

Here’s the conversations CIOs and CISOs need to have before the next security incident.

SC Media → Details

SecurityWeek general Apple 3d ago

Apple Patches 87 Vulnerabilities in iOS, 155 in macOS Tahoe

Apple announced that dozens of vulnerabilities have been patched in each of its operating systems. The post Apple Patches 87 Vulnerabilities in iOS, 155 in m...

SecurityWeek → Details

HackRead general Apple 3d ago

From Payments to Portfolios: How Financial Super Apps Rewrite Economics of Global Investing 

See how stablecoins, tokenized stocks and fractional investing lower costs and expand global access to US markets through modern financial super apps worldwide.

HackRead → Details

Security Affairs general Apple Amazon Fortinet 3d ago

U.S. CISA adds Arista VeloCloud Orchestrator and Fortinet FortiOS flaws to its Known Exploited Vulnerabilities catalog

U.S.

1 IOC

Security Affairs → Details

1 2 3 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA