Apple News Articles

Recent news articles refferecing the vendors vulnerabilities.

iPhone Security Alert: Apple releases emergency iOS update to fix data leak vulnerability

Apple has released an urgent iOS and iPadOS update (18.3.1) to patch a critical security vulnerability (CVE-2025-24200) that allows attackers with physical access to bypass USB Restricted Mode on locked devices. Discovered by The Citizen Lab, the flaw has been exploited in highly targeted attacks. S...

5 days ago

Apple Patches Critical IOS Zero-Day CVE-2025-24200

Apple releases emergency updates for iOS and iPadOS to fix CVE-2025-24200, a zero-day vulnerability exploited to bypass USB security on locked devices.

6 days ago

Apple zero day used in 'extremely sophisticated attack' | TechTarget

Apple announced on Monday it patched a zero-day flaw in iPads and iPhones that could enable an attacker to disable the USB Restricted Mode security feature.

6 days ago

Apple fixes zero-day flaw exploited in "extremely sophisticated" attack (CVE-2025-24200) - Help Net Security

iPhone/iPad users: implement updates to fix a security feature bypass vulnerability (CVE-2025-24200) exploited in a sophisticated attack.

6 days ago

Apple Patches Actively Exploited iOS Zero-Day CVE-2025-24200 in Emergency Update

Apple released an emergency iOS update to fix CVE-2025-24200, a zero-day flaw exploited to bypass USB Restricted Mode on locked devices in sophisticat

1 week ago

Apple iOS 0-day Vulnerability Exploited Wild in Extremely Sophisticated Attack

Apple has released emergency security updates to address a zero-day vulnerability, CVE-2025-24200, that has been actively exploited in targeted attacks against iPhone and iPad users.

1 week ago

New Apple Warning For Millionsā€”Update Now To Fix Critical Flaw

A critical flaw in millions of Apple products including Macs and iPads could allow attackers to execute code. Here's what you need to know.

2 weeks ago

Apple's macOS Kernel Vulnerability Let Attackers Escalate Privileges - PoC Released

A critical vulnerability in Apple's macOS kernel (XNU), tracked as CVE-2025-24118, has been disclosed, potentially allowing attackers to escalate privileges, corrupt memory, and even execute kernel-level code.Ā 

2 weeks ago

Apple's macOS Vulnerability (CVE-2025-24118) Exposes Users to Privilege Escalation Attacks

A critical privilege escalation vulnerability in Apple's macOS kernel has been revealed, posing a significant risk to users.

2 weeks ago

The Good, the Bad and the Ugly in Cybersecurity - Week 5

Officials seize two major hacking forums, zero-day bug found in multiple Apple products, and APTs abuse Gemini AI to bolster cyber operations.

2 weeks ago

Week in review: Apple 0-day used to target iPhones, DeepSeekā€™s popularity exploited by scammers - Help Net Security

Hereā€™s an overview of some of last weekā€™s most interesting news, articles, interviews and videos: Apple zero-day vulnerability exploited to target iPhone

2 weeks ago

U.S. CISA adds Apple products' flaw to its Known Exploited Vulnerabilities catalog

U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Apple products' flaw to its Known Exploited Vulnerabilities catalog.

3 weeks ago

iOS 18.3ā€”Update Now Warning Issued To All iPhone Users

Apple has issued iOS 18.3, fixing 29 flaws, one of which is already being used in real-life attacks on iPhones. Here's what you need to know.

3 weeks ago

Apple zero-day vulnerability exploited to target iPhone users (CVE-2025-24085) - Help Net Security

Apple has shipped a fix for a zero-day vulnerability (CVE-2025-24085) that is being leveraged by attackers against iPhone users.

3 weeks ago

iOS 18.3ā€”Update Now Warning Issued To All iPhone Users

Apple has issued iOS 18.3, fixing 29 flaws, one of which is already being used in real-life attacks on iPhones. Here's what you need to know.

3 weeks ago

Apple plugs exploited security hole in iOS, updates macOS

Apple has plugged a security hole in the software at the heart of its iPhones, iPads, Vision Pro goggles, Apple TVs andĀ macOS Sequoia Macs, warning some miscreants have already exploited the bug. The...

3 weeks ago

9 security flaws fixed in iOS 18.3: Should you trust Apple Intelligence now?

Apple has rolled out critical software updates for its devices, including iOS 18.3, iPadOS 18.3, macOS Sequoia 15.3, tvOS 18.3, visionOS 2.3, and watchOS

3 weeks ago

Apple Zero-day Vulnerability Actively Exploited to Attack iPhone Users

Apple has released critical security updates to address a zero-day vulnerability actively exploited in attacks targeting iPhone users.Ā 

3 weeks ago

Apple Patches Actively Exploited Zero-Day Affecting iPhones, Macs, and More

Apple addresses a zero-day flaw (CVE-2025-24085) and fixes 9 vulnerabilities in iOS 18.3, macOS Sequoia 15.3, and more.

3 weeks ago

Apple Patches First Exploited iOS Zero-Day of 2025

Apple has released fixes for dozens of vulnerabilities in its mobile and desktop products, including an iOS zero-day exploited in attacks.

3 weeks ago

iOS 18.3ā€”Update Now Warning Issued To All iPhone Users

Apple has issued iOS 18.3, fixing 29 flaws, one of which is already being used in real-life attacks on iPhones. Here's what you need to know.

3 weeks ago

SUSCTL: CVE-2024-54507 | daily.dev

A significant vulnerability, CVE-2024-54507, was discovered in macOS 15.0 where the use of sysctl command could lead to a kernel crash due to an invalid load. The issue was traced to integer type confusion in the sysctl_udp_log_port handler, leading to a kernel memory leak. The bug was reported and ...

4 weeks ago

macOS flaw that allowed attackers to bypass core system protections is now fixed - macOS Discussions on AppleInsider Forums

macOS flaw that allowed attackers to bypass core system protections is now fixed

1 month ago

product vulnerabilities / malware / ransomware

Our focus is on the home user, and how to secure your privacy and safety online.

1 month ago

Apple fixes macOS flaw that allowed attackers to bypass core system protections

A macOS vulnerability exposed Apple devices to severe security risks by bypassing System Integrity Protection, but a security patch has killed the exploit.

Your Mac may be at risk: Fix the new SIP exploit immediately

Microsoft has disclosed a recently patched security vulnerability in Appleā€™s macOS, identified as CVE-2024-44243, which could allow an attacker operating with

CVE-2024-44243 macOS flaw allows persistent malware installation

Microsoft disclosed details of a flaw in Apple macOS that could have allowed an attacker to bypass the OS System Integrity Protection (SIP)

Microsoft Discovers macOS Flaw CVE-2024-44243, Bypassing SIP

CVE-2024-44243, a macOS vulnerability discovered recently by Microsoft, can allow attackers to bypass Apple's System Integrity Protection (SIP).

Microsoft reveals macOS vulnerability that allowed System Integrity Protection bypass - SiliconANGLE

Microsoft reveals macOS vulnerability that allowed System Integrity Protection bypass - SiliconANGLE

Microsoft Uncovers macOS Vulnerability CVE-2024-44243 Allowing Rootkit Installation

CVE-2024-44243 flaw in macOS SIP allowed root-level exploits, risking persistent malware and reduced system reliability.

Microsoft researchers find critical macOS SIP vulnerability

Microsoft discovers critical macOS vulnerability: cybercriminals can bypass Apple's security measures via this SIP vulnerability.

Microsoft Discloses macOS Kernel Extension Vulnerability

Microsoft's Threat Intelligence team has uncovered a critical security vulnerability in Apple's macOS that could allow attackers to bypass System Integrity Protection (SIP) through third-party kernel...

Critical macOS Vulnerability Lets Hackers to Bypass Appleā€™s System Integrity Protection

Microsoft Threat Intelligence has uncovered a critical macOS vulnerability that allowed attackers to bypass Appleā€™s System Integrity Protection (SIP).

New macOS Vulnerability Lets Attackers Bypass Appleā€™s System Integrity Protection (SIP)

Microsoft has identified a significant vulnerability in macOS that could allow attackers to bypass Appleā€™s System Integrity Protection (SIP).

Microsoft: macOS bug lets hackers install malicious kernel drivers

Apple recently addressed a macOS vulnerability that allows attackers to bypass System Integrity Protection (SIP) and install malicious kernel drivers by loading third-party kernel extensions.

Analyzing CVE-2024-44243, a macOS System Integrity Protection bypass through kernel extensions | Microsoft Security Blog

Microsoft discovered a macOS vulnerability allowing attackers to bypass System Integrity Protection (SIP) by loading third party kernel extensions, which could lead to serious consequences, such as allowing attackers to install rootkits, create persistent malware, bypass Transparency, Consent, and C...

PoC Exploit Released for Critical macOS Sandbox Vulnerability (CVE-2024-54498)

A proof-of-concept (PoC) exploit has been publicly disclosed for a critical vulnerability impacting macOS systems, identified asĀ CVE-2024-54498.

Critical macOS Sandbox Vulnerability (CVE-2024-54498) PoC Exploit Released Online

A proof-of-concept exploit was released for a critical vulnerability impacting macOS systems, identified as CVE-2024-54498.

Apple patches zero day affecting operating systems for devices, Macs

Apple released a bevy of security updates to fix a slew of vulnerabilities in its products on Monday, including a zero day that ā€œmay have been exploitedā€ in operating systems for its iPhones, iPads and Macintosh computers.

Researchers Uncover Symlink Exploit Allowing TCC Bypass in iOS and macOS

Apple patches CVE-2024-44131, a TCC bypass vulnerability enabling malicious apps to access sensitive data via symlink manipulation.

iOS 18 Alertā€”iPhone Users Waiting To Update At Risk From New Attack

People waiting to update to iOS 18 could be putting their security at risk, according to a new warning. Here's what you need to know.

iOS vuln leaves user data dangerously exposed | Computer Weekly

Jamf threat researchers detail an exploit chain for a recently patched iOS vulnerability that enables a threat actor to steal sensitive data, warning that many organisations are still neglecting mobile updates.

Jamf details scary iCloud flaw that was exploitable until this fall

Bypass allowed apps to access sensitive data without notifying the user.

Gergely's hack blog

Gergely's blog about hacking, privacy, and everything else

AUSCERT Week in Review for 29th November 2024 - AUSCERT

Greetings, This week, we had the exciting opportunity to reconnect with our Melbourne community at an AUSCERT member meetup. It was an inspiring space for collaboration, where participants shared experiences,...

CISA Warns of Apple & Oracle Agile Vulnerabilities Exploited in Wild

CISA has issued an urgent advisory regarding three critical vulnerabilities affecting Apple and Oracle products.

Tag: CVE-2024-44308

Following up on yesterdayā€™s story about how Apple pushed major macOS, iOS, and iPadOS security updates out the door to cover a pair of vulnerabilities, it appears that the vulnerabilities are already being...

iOS 18.1.1ā€”Update Now Warning Issued To All iPhone Users

Apple has issued iOS 18.1.1, an emergency iPhone update fixing two flaws being used in real-life attacks. Here's what you need to know.