Operation Triangulation – 0-click iMessage Attacks to Hack iPhones

Cybersecurity researchers at Securelist have discovered a malicious operation called “Triangulation”, in which attackers exploit four unknown vulnerabilities (Zero-Days) in iPhones via the 0-click iMessage attack. The hackers send a harmful attachment through iMessage, exploiting a code execution vulnerability and utilising a privilege escalation exploit in JavaScript. Despite the origin of the hardware features being unclear, the flaw suggests that advanced hardware protections are ineffective against intelligent attackers.

