Apple Fixes iOS Notification Bug Exposing Deleted Messages
2026-04-23T14:52:15Z•052fdab5069ee0ddde54d6b896bcb8b87e0856062aac6581e57f889e70a12f50
CVE-2024-3721CVE-2026-33032active-exploitai-agentsappleddosdvr-exploitformbookgoogle-geminiioslazarusliving-off-the-landmacosmalwaremiraincsCnotificationspasskeysprompt-injectionproxySmartransomwaresim-farmssupply-chainvulnerabilityzionsiphon
What happened
This feed highlights a surge of active threats, high‑risk vulnerabilities and growing AI-related risks. Apple patched an iOS notification bug that retained deleted messages; researchers and vendors warn of AI agent risks (new Gemini agent identities, prompt‑injection payloads) and increasing incidents caused by unchecked agents. Multiple actively exploited vulnerabilities and malware campaigns were reported — including a Mirai-based campaign exploiting TBK DVR CVE-2024-3721 and a critically exploited nginx-ui MCP auth bypass CVE-2026-33032 (CVSS 9.8) — alongside widespread ransomware, supply‑/
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- infosecurity_magazine
- Record identifier
- 052fdab5069ee0ddde54d6b896bcb8b87e0856062aac6581e57f889e70a12f50
- Enrichment time
- 2026-04-23T14:52:15Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.