Apple Updates Legacy iOS Versions to Patch Coruna Exploits
2026-03-12T19:24:08Z•987216782f0cb6617a9b7a267f84b9c90bb21c5c065e01565728d0a616a7b141
CorunaHandalaIOS XRIran-linkedNorth KoreaSQL injectionappleciscoiOSiPadOSinfostealermetan8npatchpolyfillscam centersserver takeoversocio‑engineeringsplunkstrykersupply chainvulnerabilitywordpresszoom
What happened
SecurityWeek roundup (March 11–12, 2026): Apple released legacy iOS/iPadOS updates (16.7.15, 15.8.7) to address Coruna exploits. Multiple vendors pushed fixes for severe vulnerabilities — Splunk and Zoom for critical/high flaws (RCE/privilege escalation), Cisco for high‑severity IOS XR issues (DoS/command execution), and n8n for critical unauthenticated RCEs enabling server takeover. An Ally WordPress plugin SQL injection exposed over 200,000 sites. A 2024 Polyfill supply‑chain compromise now shows North Korean linkage via an infostealer. Meta disabled >150,000 scam center accounts and rolled‑
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- securityweek
- Record identifier
- 987216782f0cb6617a9b7a267f84b9c90bb21c5c065e01565728d0a616a7b141
- Enrichment time
- 2026-03-12T19:24:08Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.