usbliter8 Brings Unpatchable BootROM Exploit to Apple A12 and A13 Devices
2026-06-22T08:51:52Z•a87c8c448716fbae90e59628692116acf378ef4c1f5815a6827882cf9fa773d9
24-billion-credentialsApple A12Apple A13BootROMCISACVE-2026-20253EDR-killerFortiBleedFortinetGentleKillerKnown-Exploited-VulnerabilitiesPostgreSQL-sidecarSecureROMSocGholishSplunkcheckm8credential-leakdata-leaklaw-enforcement-takedownransomwareunpatchableusbliter8
What happened
Multiple high-impact security events reported: Paradigm Shift published usbliter8, an unpatchable BootROM/SecureROM exploit for Apple A12/A13 devices that enables arbitrary code execution and extends checkm8-style risks to newer iPhones. FortiBleed exposed credentials for roughly 74,000 Fortinet devices in a large-scale credential-spraying operation with active exploitation observed and a CISA emergency alert. CISA also added a critical Splunk Enterprise vulnerability (CVE-2026-20253, CVSS 9.8) in the PostgreSQL sidecar service to its Known Exploited Vulnerabilities catalog, urging immediate/f
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- securityaffairs
- Record identifier
- a87c8c448716fbae90e59628692116acf378ef4c1f5815a6827882cf9fa773d9
- Enrichment time
- 2026-06-22T08:51:52Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.