Apple News Articles
Recent news articles refferecing the vendors vulnerabilities.
iPhone Security Alert: Apple releases emergency iOS update to fix data leak vulnerability
Apple has released an urgent iOS and iPadOS update (18.3.1) to patch a critical security vulnerability (CVE-2025-24200) that allows attackers with physical access to bypass USB Restricted Mode on locked devices. Discovered by The Citizen Lab, the flaw has been exploited in highly targeted attacks. S...
5 days ago

Apple Patches Critical IOS Zero-Day CVE-2025-24200
Apple releases emergency updates for iOS and iPadOS to fix CVE-2025-24200, a zero-day vulnerability exploited to bypass USB security on locked devices.
6 days ago
Apple zero day used in 'extremely sophisticated attack' | TechTarget
Apple announced on Monday it patched a zero-day flaw in iPads and iPhones that could enable an attacker to disable the USB Restricted Mode security feature.
6 days ago
Apple fixes zero-day flaw exploited in "extremely sophisticated" attack (CVE-2025-24200) - Help Net Security
iPhone/iPad users: implement updates to fix a security feature bypass vulnerability (CVE-2025-24200) exploited in a sophisticated attack.
6 days ago

Apple Patches Actively Exploited iOS Zero-Day CVE-2025-24200 in Emergency Update
Apple released an emergency iOS update to fix CVE-2025-24200, a zero-day flaw exploited to bypass USB Restricted Mode on locked devices in sophisticat
1 week ago

Apple iOS 0-day Vulnerability Exploited Wild in Extremely Sophisticated Attack
Apple has released emergency security updates to address a zero-day vulnerability, CVE-2025-24200, that has been actively exploited in targeted attacks against iPhone and iPad users.
1 week ago

New Apple Warning For MillionsāUpdate Now To Fix Critical Flaw
A critical flaw in millions of Apple products including Macs and iPads could allow attackers to execute code. Here's what you need to know.
2 weeks ago

Apple's macOS Kernel Vulnerability Let Attackers Escalate Privileges - PoC Released
A critical vulnerability in Apple's macOS kernel (XNU), tracked as CVE-2025-24118, has been disclosed, potentially allowing attackers to escalate privileges, corrupt memory, and even execute kernel-level code.Ā
2 weeks ago

Apple's macOS Vulnerability (CVE-2025-24118) Exposes Users to Privilege Escalation Attacks
A critical privilege escalation vulnerability in Apple's macOS kernel has been revealed, posing a significant risk to users.
2 weeks ago

The Good, the Bad and the Ugly in Cybersecurity - Week 5
Officials seize two major hacking forums, zero-day bug found in multiple Apple products, and APTs abuse Gemini AI to bolster cyber operations.
2 weeks ago
Week in review: Apple 0-day used to target iPhones, DeepSeekās popularity exploited by scammers - Help Net Security
Hereās an overview of some of last weekās most interesting news, articles, interviews and videos: Apple zero-day vulnerability exploited to target iPhone
2 weeks ago
U.S. CISA adds Apple products' flaw to its Known Exploited Vulnerabilities catalog
U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Apple products' flaw to its Known Exploited Vulnerabilities catalog.
3 weeks ago

iOS 18.3āUpdate Now Warning Issued To All iPhone Users
Apple has issued iOS 18.3, fixing 29 flaws, one of which is already being used in real-life attacks on iPhones. Here's what you need to know.
3 weeks ago
Apple zero-day vulnerability exploited to target iPhone users (CVE-2025-24085) - Help Net Security
Apple has shipped a fix for a zero-day vulnerability (CVE-2025-24085) that is being leveraged by attackers against iPhone users.
3 weeks ago

iOS 18.3āUpdate Now Warning Issued To All iPhone Users
Apple has issued iOS 18.3, fixing 29 flaws, one of which is already being used in real-life attacks on iPhones. Here's what you need to know.
3 weeks ago
Apple plugs exploited security hole in iOS, updates macOS
Apple has plugged a security hole in the software at the heart of its iPhones, iPads, Vision Pro goggles, Apple TVs andĀ macOS Sequoia Macs, warning some miscreants have already exploited the bug. The...
3 weeks ago

9 security flaws fixed in iOS 18.3: Should you trust Apple Intelligence now?
Apple has rolled out critical software updates for its devices, including iOS 18.3, iPadOS 18.3, macOS Sequoia 15.3, tvOS 18.3, visionOS 2.3, and watchOS
3 weeks ago

Apple Zero-day Vulnerability Actively Exploited to Attack iPhone Users
Apple has released critical security updates to address a zero-day vulnerability actively exploited in attacks targeting iPhone users.Ā
3 weeks ago

Apple Patches Actively Exploited Zero-Day Affecting iPhones, Macs, and More
Apple addresses a zero-day flaw (CVE-2025-24085) and fixes 9 vulnerabilities in iOS 18.3, macOS Sequoia 15.3, and more.
3 weeks ago
Apple Patches First Exploited iOS Zero-Day of 2025
Apple has released fixes for dozens of vulnerabilities in its mobile and desktop products, including an iOS zero-day exploited in attacks.
3 weeks ago

iOS 18.3āUpdate Now Warning Issued To All iPhone Users
Apple has issued iOS 18.3, fixing 29 flaws, one of which is already being used in real-life attacks on iPhones. Here's what you need to know.
3 weeks ago

SUSCTL: CVE-2024-54507 | daily.dev
A significant vulnerability, CVE-2024-54507, was discovered in macOS 15.0 where the use of sysctl command could lead to a kernel crash due to an invalid load. The issue was traced to integer type confusion in the sysctl_udp_log_port handler, leading to a kernel memory leak. The bug was reported and ...
4 weeks ago
macOS flaw that allowed attackers to bypass core system protections is now fixed - macOS Discussions on AppleInsider Forums
macOS flaw that allowed attackers to bypass core system protections is now fixed
1 month ago
product vulnerabilities / malware / ransomware
Our focus is on the home user, and how to secure your privacy and safety online.
1 month ago
Apple fixes macOS flaw that allowed attackers to bypass core system protections
A macOS vulnerability exposed Apple devices to severe security risks by bypassing System Integrity Protection, but a security patch has killed the exploit.

Your Mac may be at risk: Fix the new SIP exploit immediately
Microsoft has disclosed a recently patched security vulnerability in Appleās macOS, identified as CVE-2024-44243, which could allow an attacker operating with
CVE-2024-44243 macOS flaw allows persistent malware installation
Microsoft disclosed details of a flaw in Apple macOS that could have allowed an attacker to bypass the OS System Integrity Protection (SIP)

Microsoft Discovers macOS Flaw CVE-2024-44243, Bypassing SIP
CVE-2024-44243, a macOS vulnerability discovered recently by Microsoft, can allow attackers to bypass Apple's System Integrity Protection (SIP).

Microsoft reveals macOS vulnerability that allowed System Integrity Protection bypass - SiliconANGLE
Microsoft reveals macOS vulnerability that allowed System Integrity Protection bypass - SiliconANGLE

Microsoft Uncovers macOS Vulnerability CVE-2024-44243 Allowing Rootkit Installation
CVE-2024-44243 flaw in macOS SIP allowed root-level exploits, risking persistent malware and reduced system reliability.

Microsoft researchers find critical macOS SIP vulnerability
Microsoft discovers critical macOS vulnerability: cybercriminals can bypass Apple's security measures via this SIP vulnerability.
Microsoft Discloses macOS Kernel Extension Vulnerability
Microsoft's Threat Intelligence team has uncovered a critical security vulnerability in Apple's macOS that could allow attackers to bypass System Integrity Protection (SIP) through third-party kernel...

Critical macOS Vulnerability Lets Hackers to Bypass Appleās System Integrity Protection
Microsoft Threat Intelligence has uncovered a critical macOS vulnerability that allowed attackers to bypass Appleās System Integrity Protection (SIP).

New macOS Vulnerability Lets Attackers Bypass Appleās System Integrity Protection (SIP)
Microsoft has identified a significant vulnerability in macOS that could allow attackers to bypass Appleās System Integrity Protection (SIP).
Microsoft: macOS bug lets hackers install malicious kernel drivers
Apple recently addressed a macOS vulnerability that allows attackers to bypass System Integrity Protection (SIP) and install malicious kernel drivers by loading third-party kernel extensions.
Analyzing CVE-2024-44243, a macOS System Integrity Protection bypass through kernel extensions | Microsoft Security Blog
Microsoft discovered a macOS vulnerability allowing attackers to bypass System Integrity Protection (SIP) by loading third party kernel extensions, which could lead to serious consequences, such as allowing attackers to install rootkits, create persistent malware, bypass Transparency, Consent, and C...

PoC Exploit Released for Critical macOS Sandbox Vulnerability (CVE-2024-54498)
A proof-of-concept (PoC) exploit has been publicly disclosed for a critical vulnerability impacting macOS systems, identified asĀ CVE-2024-54498.

Critical macOS Sandbox Vulnerability (CVE-2024-54498) PoC Exploit Released Online
A proof-of-concept exploit was released for a critical vulnerability impacting macOS systems, identified as CVE-2024-54498.
Apple patches zero day affecting operating systems for devices, Macs
Apple released a bevy of security updates to fix a slew of vulnerabilities in its products on Monday, including a zero day that āmay have been exploitedā in operating systems for its iPhones, iPads and Macintosh computers.

Researchers Uncover Symlink Exploit Allowing TCC Bypass in iOS and macOS
Apple patches CVE-2024-44131, a TCC bypass vulnerability enabling malicious apps to access sensitive data via symlink manipulation.

iOS 18 AlertāiPhone Users Waiting To Update At Risk From New Attack
People waiting to update to iOS 18 could be putting their security at risk, according to a new warning. Here's what you need to know.
iOS vuln leaves user data dangerously exposed | Computer Weekly
Jamf threat researchers detail an exploit chain for a recently patched iOS vulnerability that enables a threat actor to steal sensitive data, warning that many organisations are still neglecting mobile updates.

Jamf details scary iCloud flaw that was exploitable until this fall
Bypass allowed apps to access sensitive data without notifying the user.
Gergely's hack blog
Gergely's blog about hacking, privacy, and everything else
AUSCERT Week in Review for 29th November 2024 - AUSCERT
Greetings, This week, we had the exciting opportunity to reconnect with our Melbourne community at an AUSCERT member meetup. It was an inspiring space for collaboration, where participants shared experiences,...
CISA Warns of Apple & Oracle Agile Vulnerabilities Exploited in Wild
CISA has issued an urgent advisory regarding three critical vulnerabilities affecting Apple and Oracle products.

Tag: CVE-2024-44308
Following up on yesterdayās story about how Apple pushed major macOS, iOS, and iPadOS security updates out the door to cover a pair of vulnerabilities, it appears that the vulnerabilities are already being...

iOS 18.1.1āUpdate Now Warning Issued To All iPhone Users
Apple has issued iOS 18.1.1, an emergency iPhone update fixing two flaws being used in real-life attacks. Here's what you need to know.