CPE
high
advisory
Malicious Packagist Composer Themes Deploying iOS Spyware
4 TTPs 2 CVEs 1 IOCThreat actors are distributing 13 malicious Composer themes via Packagist to compromise streaming websites and deploy a WebKit-to-kernel exploit chain against iOS visitors for data exfiltration and cryptocurrency wallet theft.
iOS +1
supply-chain
mobile-malware
web-security
cryptocurrency-theft
spyware
4t
2c
1i
medium
advisory
Remote Code Execution Vulnerability in zlib
1 TTP 1 CVEA memory corruption vulnerability in the zlib library allows a remote, unauthenticated attacker to execute arbitrary code or trigger a denial of service.
zlib
1t
1c
high
advisory
Apple Security Updates — July 2026
4 CVEs 10 IOCsRoundup of Apple security advisories published in July 2026.
PoC
macOS LaunchAgents +46
roundup
4c
10i
updated