Skip to main content
Live Webinar with SANS (June 25)— Agentic CTI Automation for Fun & ProfitRegister Free
Mallory
Back to intelligence
actively-exploited-vulnerabilitywidely-deployed-product-advisoryendpoint-software-vulnerability

Emergency 0-Day Patches Issued by Apple and Google for Actively Exploited Vulnerabilities

Updated 3mo agoFirst seen Dec 15, 20253 sources

Apple and Google have released emergency security updates to address zero-day vulnerabilities that were actively exploited in sophisticated attacks targeting users of their platforms. Apple issued patches across its ecosystem—including iPhones, iPads, and Macs—to fix two WebKit bugs, warning that these flaws had been abused in highly targeted attacks against specific individuals. Google, in parallel, released a Chrome Stable channel update to address multiple security flaws, including CVE-2025-14174, an out-of-bounds memory access vulnerability that was already being exploited in the wild. Both companies provided limited technical details but confirmed that the vulnerabilities were under active attack and that coordinated investigation revealed overlap in their findings, with Apple's security team and Google's Threat Analysis Group credited for discovery.

Security researchers have noted that these vulnerabilities could be weaponized by commercial spyware vendors, and there is evidence suggesting that the flaws were exploited before patches were available. The urgency of the situation has led to widespread advisories urging users to update their devices immediately to mitigate the risk of compromise. The lack of detailed disclosure from both Apple and Google underscores the sensitive nature of the attacks and the ongoing threat posed by sophisticated adversaries targeting mainstream software platforms used by billions worldwide.

Share:
Emergency 0-Day Patches Issued by Apple and Google for Actively Exploited Vulnerabilities
Stay ahead

Get ahead of threats like this

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.

EVENT TIMELINE

How this story unfolded

2 events from the most recent confirmed update back to the earliest known activity.

2 EVENTS
Dec 15, 20256mo ago

Apple releases emergency patches for two exploited WebKit zero-days

Apple released security updates for iPhones, iPads, and Macs to address two WebKit vulnerabilities, including CVE-2025-43529, that it said were used in highly targeted attacks against specific individuals. Reporting suggested the activity may be linked to advanced spyware or state-backed operators.

Google releases emergency Chrome patch for exploited zero-day

Google issued an emergency Chrome update to fix multiple vulnerabilities, including CVE-2025-14174, an out-of-bounds memory access flaw reported as actively exploited in the wild. The bug was credited to Apple's security engineering team and Google's Threat Analysis Group, indicating a likely sophisticated targeted campaign.

LINKED ENTITIES

Related entities

Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.

98 LINKEDOpen in app
Organizations
63 linked
AppleGoogleXMicrosoft CorporationRarlabGogsLangchainCisco SystemsfbiJenkinsNational Cyber Security CentreMalwarebytesGladinetZscalerPalo Alto NetworksCISAWatchGuard TechnologiesApache Software FoundationSAPGitLabMITREU.S. Department of JusticeACROS SecurityAPT36LastPassCloudflarePush SecurityTotolinkDatadogAction1PlexJapan Computer Emergency Response Team Coordination CenterHuawei TechnologiesPRODAFTFortinetWinRARIvantiNoName057(16)D-LinkAhnlabPentest LimitedCYFIRMAGitHubEUHuntressWizTelegramBitsightSentinelOneHamasgruStrixHeisenbergICOWirteCyberArmyofRussia_RebornSouthwest Petroleum UniversitySichuan Zhixin Ruijie Network TechnologyBeijing Huanyu TianqiongFreedom ChatGentlemenOperation Hanoi ThiefSector 16
The operational view lives in Mallory

See the full picture, correlated to your attack surface.

This page covers what’s public. Mallory adds the parts that aren’t — which of your assets are affected, which threat actors are using it right now, which detections to deploy, and what to do next.
Exposure mapping

Map indicators from this story to your assets and identify affected systems in minutes.

Threat actor evidence

Every observed campaign, victim, and pivot linked to actors named in this story.

Associated malware

Malware, exploits, and IOCs connected to the activity described here.

Detection signatures

YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.

Scheduled alerts

Get matching new stories delivered to your team as they break — not the next morning.

AI threads

Ask questions about this story and take action on the answers.