Security News

Apple fixes exploited iOS, iPadOS zero-day (CVE-2022-42827)
2022-10-25 08:44

For the ninth time this year, Apple has released fixes for a zero-day vulnerability exploited by attackers to compromise iPhones. CVE-2022-42827 is an out-of-bounds write issue in the iOS and iPadOS kernel, which can be exploited to allow a malicious application to execute arbitrary code with kernel privileges.

Apple Releases Patch for New Actively Exploited iOS and iPadOS Zero-Day Vulnerability
2022-10-25 03:35

Tech giant Apple on Monday rolled out updates to remediate a zero-day flaw in iOS and iPadOS that it said has been actively exploited in the wild. The iPhone maker said it addressed the bug with improved bounds checking, while crediting an anonymous researcher for reporting the vulnerability.

Mystery iPhone update patches against iOS 16 mail crash-attack
2022-10-11 18:28

We use Apple's Mail app all day, every day for handling work and personal email, including a plentiful supply of very welcome Naked Security comments, questions, article ideas, typo reports, podcast suggestions and much more. We've always found the Mail app to be a very useful workhorse that suits us well: it's not especially fancy; it's not full of features we never use; it's visually simple; and, it's been doggedly reliable.

Facebook Detects 400 Android and iOS Apps Stealing Users Log-in Credentials
2022-10-07 13:52

Meta Platforms on Friday disclosed that it had identified over 400 malicious apps on Android and iOS that it said targeted online users with the goal of stealing their Facebook login information. 42.6% of the rogue apps were photo editors, followed by business utilities, phone utilities, games, VPNs, and lifestyle apps.

CISA orders agencies to patch Windows, iOS bugs used in attacks
2022-09-14 16:48

CISA added two new vulnerabilities to its list of security bugs exploited in the wild today, including a Windows privilege escalation vulnerability and an arbitrary code execution flaw affecting iPhones and Macs. Apple also patched the arbitrary code execution vulnerability on Monday and confirmed that it was exploited in attacks as a zero-day bug in the iOS and macOS kernel.

Apple fixes actively exploited zero-day in macOS, iOS (CVE-2022-32917)
2022-09-13 08:41

Apple has fixed a slew of vulnerabilities in macOS, iOS, and iPadOS, including a zero-day kernel vulnerability exploited by attackers in the wild. "Apple is aware of a report that this issue may have been actively exploited," the company said, and noted that the vulnerability has been remediated with improved bounds checks.

Apple Releases iOS and macOS Updates to Patch Actively Exploited Zero-Day Flaw
2022-09-13 03:36

Apple has released another round of security updates to address multiple vulnerabilities in iOS and macOS, including a new zero-day flaw that has been used in attacks in the wild.It's worth noting that CVE-2022-32917 is also the second Kernel related zero-day flaw that Apple has remediated in less than a month.

Apple patches zero-day holes – even in the brand new iOS 16
2022-09-12 21:25

Just to be clear, if you don't want to upgrade to iOS 16 just yet, you still need to update, because the iOS 15.7 and iPadOS 15.7 updates include numerous security patches, including a fix for a bug dubbed CVE-2022-32917. APPLE-SA-2022-09-12-1: iOS 16 The big one! As well as a bunch of new features, this includes the Safari patches delivered separately for macOS, and a fix for CVE-2022-32917.

Apple released iOS 16 with Lockdown, Safety Check security features
2022-09-12 14:20

Apple released iOS 16 today with new features to boost iPhone users' security and privacy, including Lockdown Mode and Security Check. As Apple said in July when it first unveiled it, the Lockdown Mode security feature is not meant for everyday usage but, instead, designed to defend high-risk individuals from targeted attacks with mercenary spyware.

Apple releasing iOS 16 with Lockdown, Safety Check security features
2022-09-12 14:20

Apple is releasing iOS 16 today with new features to boost iPhone users' security and privacy, including Lockdown Mode and Security Check. As Apple said in July when it first unveiled it, the Lockdown Mode security feature is not meant for everyday usage but, instead, designed to defend high-risk individuals from targeted attacks with mercenary spyware.