Apple Updates Legacy iOS Versions to Patch Coruna Exploits

2026-03-12T19:24:08Z987216782f0cb6617a9b7a267f84b9c90bb21c5c065e01565728d0a616a7b141
CorunaHandalaIOS XRIran-linkedNorth KoreaSQL injectionappleciscoiOSiPadOSinfostealermetan8npatchpolyfillscam centersserver takeoversocio‑engineeringsplunkstrykersupply chainvulnerabilitywordpresszoom

What happened

SecurityWeek roundup (March 11–12, 2026): Apple released legacy iOS/iPadOS updates (16.7.15, 15.8.7) to address Coruna exploits. Multiple vendors pushed fixes for severe vulnerabilities — Splunk and Zoom for critical/high flaws (RCE/privilege escalation), Cisco for high‑severity IOS XR issues (DoS/command execution), and n8n for critical unauthenticated RCEs enabling server takeover. An Ally WordPress plugin SQL injection exposed over 200,000 sites. A 2024 Polyfill supply‑chain compromise now shows North Korean linkage via an infostealer. Meta disabled >150,000 scam center accounts and rolled‑

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityweek
Record identifier
987216782f0cb6617a9b7a267f84b9c90bb21c5c065e01565728d0a616a7b141
Enrichment time
2026-03-12T19:24:08Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.