Jan. 23, 2024, 10:25 a.m. | MalBot

Malware Analysis, News and Indicators - Latest topics malware.news

Apple has issued security updates to address the first 2024 zero-day vulnerability affecting its products. The vulnerability, CVE-2024-23222 (CVSS: 7.5), is defined as a type confusion flaw in WebKit, Apple’s web browser engine.


According to Apple’s security advisory, the vulnerability could allow attackers to execute arbitrary code while the victim device processes maliciously crafted web content.


Details of CVE-2024-23222 on SOCRadar Vulnerability Intelligence


As a zero-day vulnerability, CVE-2024-23222 is currently being exploited in the wild; no further information is …

address advisory apple apple zero-day arbitrary code attackers browser code cve cve-2024-23222 cvss defined device engine fix flaw products security security advisory security updates type confusion updates victim vulnerability web web browser webkit zero-day zero-day vulnerability

Social Engineer For Reverse Engineering Exploit Study

@ Independent study | Remote

Information Security Specialist, Sr. (Container Hardening)

@ Rackner | San Antonio, TX

Principal Security Researcher (Advanced Threat Prevention)

@ Palo Alto Networks | Santa Clara, CA, United States

EWT Infosec | IAM Technical Security Consultant - Manager

@ KPMG India | Bengaluru, Karnataka, India

Security Engineering Operations Manager

@ Gusto | San Francisco, CA; Denver, CO; Remote

Network Threat Detection Engineer

@ Meta | Denver, CO | Reston, VA | Menlo Park, CA | Washington, DC