Description
Detects web content that exploits CVE-2016-4655, a use-after-free in WebKit that can allow code execution. The rule matches the memory write primitives and ARM64 instruction sequences from public iOS exploit chains, an indicator of attacks against older Apple devices.