Apple fixes zero-day exploited in u2018extremely sophisticated attacku2019
The company also noted that two previously disclosed flaws, CVE-2025-14174 and CVE-2025-43529, were exploited in the same incidents.
GreyNoise said it recorded 417 exploitation sessions from eight unique source IP addresses between February 1 and 9, 2026.
The company also noted that two previously disclosed flaws, CVE-2025-14174 and CVE-2025-43529, were exploited in the same incidents.
The botnet incorporates exploits for more than a dozen Linux kernel vulnerabilities dating back to 2009u20132010.
In total, the researchers observed seven distinct macOS malware families installed on the victimu2019s system.
Malwarebytes says the campaign impersonates not only 7-Zip, but HolaVPN, TikTok, WhatsApp, and Wire VPN.
There is currently no public information detailing attacks that exploited the flaws.
The intrusion originated from a single SmarterMail VM that had been set up by an employee and was not receiving updates.