U.S. Cybersecurity and Infrastructure Security Agency (CISA) added Apple products and TP-Link routers flaws to its Known Exploited Vulnerabilities catalog.
A recently patched vulnerability in Apple's Messages app, actively exploited in the wild, targeted journalists with Paragon's Graphite spyware.
Apple addressed the flaw in its products with various software updates.
Citizen Lab confirmed the use of Paragon's Graphite spyware to hack fully updated iPhones, targeting journalists in Europe.
Apple alerted select iOS users of spyware targeting and patched the zero-click exploit used in the attack.
Paragon accused the Italian government of refusing its offer to help investigate spyware use against a journalist.
CISA added a command injection vulnerability in TP-Link routers to its catalog.
Federal agencies are required to address the vulnerabilities identified in the catalog by July 7, 2025.