Sophisticated iPhone Exploit Kit Targets Crypto Wallets in Escalating Threat Landscape
Google's Threat Intelligence Group has uncovered a highly advanced hacking tool dubbed the Coruna iPhone exploit kit, capable of compromising devices running iOS 13.0 through 17.2.1. The toolkit employs 23 novel exploit methods across five attack chains, marking one of the most technically sophisticated threats to mobile security in recent years.
Originally developed by a surveillance firm, the weaponized code has cascaded through Russian state-linked actors before reaching Chinese cybercriminal groups. This trajectory underscores a burgeoning black market where nation-state grade tools migrate to financial predators. The kit specifically targets cryptocurrency holders through cloned exchange portals like WEEX, deploying browser-based zero-day exploits when victims visit malicious sites.
Security analysts note the attack's surgical precision: the malware first fingerprints device vulnerabilities before executing privilege escalation through Safari vulnerabilities. This multi-stage approach suggests professional-grade operational security typically reserved for espionage campaigns, now repurposed for digital asset theft.