Security News > 2022 > December > Apple Patches iPhone Zero-Day

Apple Patches iPhone Zero-Day
2022-12-16 12:04

The most recent iPhone update-to version 16.1.2-patches a zero-day vulnerability that "May have been actively exploited against versions of iOS released before iOS 15.1.".

Apple said security researchers at Google's Threat Analysis Group, which investigates nation state-backed spyware, hacking and cyberattacks, discovered and reported the WebKit bug.

WebKit bugs are often exploited when a person visits a malicious domain in their browser.

It's not uncommon for bad actors to find vulnerabilities that target WebKit as a way to break into the device's operating system and the user's private data.

WebKit bugs can be "Chained" to other vulnerabilities to break through multiple layers of a device's defenses.


News URL

https://www.schneier.com/blog/archives/2022/12/apple-patches-iphone-zero-day.html

Related vendor

VENDOR LAST 12M #/PRODUCTS LOW MEDIUM HIGH CRITICAL TOTAL VULNS
Apple 72 238 1567 2279 265 4349