ScanMalware.com
HomeSearchBlogAPIAboutContact
← Back to all posts

#ios

1 post tagged with ios

#automation#browser-exploit#browser-security#caa#certificate-transparency#certificates#cli#compliance#coruna#devops#dns#exploit-kit#google#ios#malware-analysis#mfa-bypass#phishing#rust#security#shinyhunters#threat-intelligence#tls#tools#webkit#yara
threat-intelligenceexploit-kitios

Detecting Coruna: New YARA Rules for the Nation-State iOS Exploit Kit Targeting Safari

March 8, 2026•6 min read

ScanMalware adds 16 new YARA detection rules for Coruna (CryptoWaters), the nation-state-grade iOS exploit kit targeting Safari/WebKit on iOS 13-17.2.1. Our rules detect both specific IOCs and generic browser exploitation techniques including in-browser Mach-O parsing, ARM64 gadget scanning, and NaN-boxing type confusion.

Read more →

© 2025 ScanMalware.com. All rights reserved.

BlogChangelogMCP ServerCLI ToolTermsPrivacyContact

Made with ❤️ in Funäsdalen, Sweden by Triop AB