Apple News Articles
Recent news articles refferecing the vendors vulnerabilities.
Apple Fixes Two Zero-Day Flaws; Check Which Models Need Software Updates
Apple released security updates on Wednesday for two zero-day vulnerabilities. The tech giants updates patched the security flaws in iOS 18.4.1, tvOS 18.4.1, iPadOS 18.4.1, visionOS 2.4.1 and macOS Sequoia 15.4.1. According to Apples security bulletin, the vulnerabilities may have been used in an ex...
18 hours ago
Apple plugs zero-day holes used in targeted iPhone attacks (CVE-2025-31200, CVE-2025-31201) - Help Net Security
Apple has released emergency security updates to fix two actively exploited zero-day vulnerabilities (CVE-2025-31200, CVE-2025-31201).
19 hours ago
Apple Patches Two Actively Exploited iOS Flaws Used in Sophisticated Targeted Attacks
Apple fixed 2 exploited flaws in iOS 18.4.1, one flagged by Google TAG, urging urgent updates.
1 day ago

CISA Adds One Known Exploited Vulnerability to Catalog | CISA
CISA has added one new vulnerability to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation, as confirmed by Fortinet. CVE-2025-24085(link is external) Apple Multiple...
2 weeks ago

Apple Backports Critical Fixes for 3 Recent 0-Days Impacting Older iOS and macOS Devices
Apple patched 3 live exploits—CVE-2025-24085, -24200, -24201—across legacy iOS/macOS devices to block escalation attacks.
2 weeks ago
Apple Warns of Three 0-Day Vulnerabilities Actively Exploited in Attacks
Apple has issued an urgent security advisory concerning three critical zero-day vulnerabilities that have been actively exploited.
2 weeks ago
CISA Adds Two Known Exploited Vulnerabilities to Catalog | CISA
CISA has added two new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation

iOS 18.3.2—Update Now Warning Issued To All iPhone Users
Apple has released iOS 18.3.2, an emergency update fixing a single iPhone security issue already being used in real-life attacks. Here's what you need to know.

Apple Issues Emergency Security Patch For iPhone, iPad And Mac Users To Fix Critical Vulnerabilities
Apple releases urgent update to fix critical security vulnerabilities.
Apple Drops Another WebKit Zero-Day Bug
A threat actor leveraged the vulnerability in an "extremely sophisticated" attack on targeted iOS users, the company says.

Apple Releases Patch for WebKit Zero-Day Vulnerability Exploited in Targeted Attacks
Apple patches WebKit zero-day CVE-2025-24201, exploited in sophisticated attacks before iOS 17.2. Update secures iOS, macOS, Safari, and Vision Pro.
Apple fixed the third actively exploited zero-day of 2025
Apple addressed a zero-day vulnerability, tracked as CVE-2025-24201, that has been exploited in "extremely sophisticated" cyber attacks.
Apple Urgently Patches Zero-day Flaw Exploited in the Wild
Apple has released an emergency security update for patching two actively exploited zero-day vulnerabilities on iOS.
iPhone Security Alert: Apple releases emergency iOS update to fix data leak vulnerability
Apple has released an urgent iOS and iPadOS update (18.3.1) to patch a critical security vulnerability (CVE-2025-24200) that allows attackers with physical access to bypass USB Restricted Mode on locked devices. Discovered by The Citizen Lab, the flaw has been exploited in highly targeted attacks. S...

Apple Patches Critical IOS Zero-Day CVE-2025-24200
Apple releases emergency updates for iOS and iPadOS to fix CVE-2025-24200, a zero-day vulnerability exploited to bypass USB security on locked devices.
Apple zero day used in 'extremely sophisticated attack' | TechTarget
Apple announced on Monday it patched a zero-day flaw in iPads and iPhones that could enable an attacker to disable the USB Restricted Mode security feature.
Apple fixes zero-day flaw exploited in "extremely sophisticated" attack (CVE-2025-24200) - Help Net Security
iPhone/iPad users: implement updates to fix a security feature bypass vulnerability (CVE-2025-24200) exploited in a sophisticated attack.
iOS 18.3 and macOS Sequoia 15.3 patch first Apple zero-day of 2025 - The Mac Security Blog
Apple released critically urgent security updates this week for macOS, iOS, iPadOS, visionOS, and tvOS to address a bug that was actively exploited in the wild.

Apple Patches Actively Exploited iOS Zero-Day CVE-2025-24200 in Emergency Update
Apple released an emergency iOS update to fix CVE-2025-24200, a zero-day flaw exploited to bypass USB Restricted Mode on locked devices in sophisticat

Apple iOS 0-day Vulnerability Exploited Wild in Extremely Sophisticated Attack
Apple has released emergency security updates to address a zero-day vulnerability, CVE-2025-24200, that has been actively exploited in targeted attacks against iPhone and iPad users.

New Apple Warning For Millions—Update Now To Fix Critical Flaw
A critical flaw in millions of Apple products including Macs and iPads could allow attackers to execute code. Here's what you need to know.

Apple's macOS Kernel Vulnerability Let Attackers Escalate Privileges - PoC Released
A critical vulnerability in Apple's macOS kernel (XNU), tracked as CVE-2025-24118, has been disclosed, potentially allowing attackers to escalate privileges, corrupt memory, and even execute kernel-level code.

Apple's macOS Vulnerability (CVE-2025-24118) Exposes Users to Privilege Escalation Attacks
A critical privilege escalation vulnerability in Apple's macOS kernel has been revealed, posing a significant risk to users.

The Good, the Bad and the Ugly in Cybersecurity - Week 5
Officials seize two major hacking forums, zero-day bug found in multiple Apple products, and APTs abuse Gemini AI to bolster cyber operations.
Week in review: Apple 0-day used to target iPhones, DeepSeek’s popularity exploited by scammers - Help Net Security
Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Apple zero-day vulnerability exploited to target iPhone
U.S. CISA adds Apple products' flaw to its Known Exploited Vulnerabilities catalog
U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Apple products' flaw to its Known Exploited Vulnerabilities catalog.

iOS 18.3—Update Now Warning Issued To All iPhone Users
Apple has issued iOS 18.3, fixing 29 flaws, one of which is already being used in real-life attacks on iPhones. Here's what you need to know.
Apple zero-day vulnerability exploited to target iPhone users (CVE-2025-24085) - Help Net Security
Apple has shipped a fix for a zero-day vulnerability (CVE-2025-24085) that is being leveraged by attackers against iPhone users.

iOS 18.3—Update Now Warning Issued To All iPhone Users
Apple has issued iOS 18.3, fixing 29 flaws, one of which is already being used in real-life attacks on iPhones. Here's what you need to know.
Apple plugs exploited security hole in iOS, updates macOS
Apple has plugged a security hole in the software at the heart of its iPhones, iPads, Vision Pro goggles, Apple TVs and macOS Sequoia Macs, warning some miscreants have already exploited the bug. The...

9 security flaws fixed in iOS 18.3: Should you trust Apple Intelligence now?
Apple has rolled out critical software updates for its devices, including iOS 18.3, iPadOS 18.3, macOS Sequoia 15.3, tvOS 18.3, visionOS 2.3, and watchOS

Apple Zero-day Vulnerability Actively Exploited to Attack iPhone Users
Apple has released critical security updates to address a zero-day vulnerability actively exploited in attacks targeting iPhone users.

Apple Patches Actively Exploited Zero-Day Affecting iPhones, Macs, and More
Apple addresses a zero-day flaw (CVE-2025-24085) and fixes 9 vulnerabilities in iOS 18.3, macOS Sequoia 15.3, and more.
Apple Patches First Exploited iOS Zero-Day of 2025
Apple has released fixes for dozens of vulnerabilities in its mobile and desktop products, including an iOS zero-day exploited in attacks.

iOS 18.3—Update Now Warning Issued To All iPhone Users
Apple has issued iOS 18.3, fixing 29 flaws, one of which is already being used in real-life attacks on iPhones. Here's what you need to know.

SUSCTL: CVE-2024-54507 | daily.dev
A significant vulnerability, CVE-2024-54507, was discovered in macOS 15.0 where the use of sysctl command could lead to a kernel crash due to an invalid load. The issue was traced to integer type confusion in the sysctl_udp_log_port handler, leading to a kernel memory leak. The bug was reported and ...
macOS flaw that allowed attackers to bypass core system protections is now fixed - macOS Discussions on AppleInsider Forums
macOS flaw that allowed attackers to bypass core system protections is now fixed
product vulnerabilities / malware / ransomware
Our focus is on the home user, and how to secure your privacy and safety online.
Apple fixes macOS flaw that allowed attackers to bypass core system protections
A macOS vulnerability exposed Apple devices to severe security risks by bypassing System Integrity Protection, but a security patch has killed the exploit.

Your Mac may be at risk: Fix the new SIP exploit immediately
Microsoft has disclosed a recently patched security vulnerability in Apple’s macOS, identified as CVE-2024-44243, which could allow an attacker operating with
CVE-2024-44243 macOS flaw allows persistent malware installation
Microsoft disclosed details of a flaw in Apple macOS that could have allowed an attacker to bypass the OS System Integrity Protection (SIP)

Microsoft Discovers macOS Flaw CVE-2024-44243, Bypassing SIP
CVE-2024-44243, a macOS vulnerability discovered recently by Microsoft, can allow attackers to bypass Apple's System Integrity Protection (SIP).

Microsoft reveals macOS vulnerability that allowed System Integrity Protection bypass - SiliconANGLE
Microsoft reveals macOS vulnerability that allowed System Integrity Protection bypass - SiliconANGLE

Microsoft Uncovers macOS Vulnerability CVE-2024-44243 Allowing Rootkit Installation
CVE-2024-44243 flaw in macOS SIP allowed root-level exploits, risking persistent malware and reduced system reliability.

Microsoft researchers find critical macOS SIP vulnerability
Microsoft discovers critical macOS vulnerability: cybercriminals can bypass Apple's security measures via this SIP vulnerability.
Microsoft Discloses macOS Kernel Extension Vulnerability
Microsoft's Threat Intelligence team has uncovered a critical security vulnerability in Apple's macOS that could allow attackers to bypass System Integrity Protection (SIP) through third-party kernel...

Critical macOS Vulnerability Lets Hackers to Bypass Apple’s System Integrity Protection
Microsoft Threat Intelligence has uncovered a critical macOS vulnerability that allowed attackers to bypass Apple’s System Integrity Protection (SIP).

New macOS Vulnerability Lets Attackers Bypass Apple’s System Integrity Protection (SIP)
Microsoft has identified a significant vulnerability in macOS that could allow attackers to bypass Apple’s System Integrity Protection (SIP).