usbliter8 Brings Unpatchable BootROM Exploit to Apple A12 and A13 Devices

2026-06-22T08:51:52Za87c8c448716fbae90e59628692116acf378ef4c1f5815a6827882cf9fa773d9
24-billion-credentialsApple A12Apple A13BootROMCISACVE-2026-20253EDR-killerFortiBleedFortinetGentleKillerKnown-Exploited-VulnerabilitiesPostgreSQL-sidecarSecureROMSocGholishSplunkcheckm8credential-leakdata-leaklaw-enforcement-takedownransomwareunpatchableusbliter8

What happened

Multiple high-impact security events reported: Paradigm Shift published usbliter8, an unpatchable BootROM/SecureROM exploit for Apple A12/A13 devices that enables arbitrary code execution and extends checkm8-style risks to newer iPhones. FortiBleed exposed credentials for roughly 74,000 Fortinet devices in a large-scale credential-spraying operation with active exploitation observed and a CISA emergency alert. CISA also added a critical Splunk Enterprise vulnerability (CVE-2026-20253, CVSS 9.8) in the PostgreSQL sidecar service to its Known Exploited Vulnerabilities catalog, urging immediate/f

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityaffairs
Record identifier
a87c8c448716fbae90e59628692116acf378ef4c1f5815a6827882cf9fa773d9
Enrichment time
2026-06-22T08:51:52Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · usbliter8 Brings Unpatchable BootROM Exploit to Apple A12 and A13 Devices · Baitaphish