Apple fixes another actively exploited zero-day vulnerability on iPhones and iPads
www.techspot.com
In a nutshell: Since last fall, Apple has released multiple critical security updates for its devices. The latest update addresses targeted attacks that can disable a security feature Apple first introduced for iPhones and iPads several years ago. The patch is also available for Mac, Apple Watch, and Apple Vision Pro. After updating, users should check if Apple Intelligence is enabled. Users who haven't updated their iPhone or iPad firmware since late January should do so now. The iOS and iPadOS 18.3.1 update fixes an actively exploited zero-day vulnerability. The security update is also available for iPadOS 17.7.5, watchOS, macOS, and visionOS. The patch supports all devices going as far back as iPhone XS, iPad Pro 12.9-inch (3rd generation), 11-inch (1st generation), iPad Air (3rd generation), iPad (7th generation), and iPad mini (5th generation).According to Apple's security support page, the flaw (CVE-2025-24200) enabled a sophisticated physical attack targeting specific individuals that could disable USB Restricted Mode. The company credits Bill Marczak of the University of Toronto's Munk School's Citizen Lab for the discovery.Apple introduced USB Restricted Mode in 2018 to protect against device cracking or other malicious hardware. It disables USB data transfers to iPhones and iPads if the devices haven't been unlocked in a week, allowing connections only for charging.A similar function, called "inactivity reboot," debuted with iOS 18.1 late last year. It causes devices to reboot after three days of inactivity, preventing thieves and law enforcement from cracking them. Apple also recently removed dozens of iOS apps found to contain malware that could read screenshots to steal cryptocurrency wallet info.There is one possible minor hitch with the update. Some users reported that macOS Sequoia version 15.3.1 re-enabled Apple Intelligence. Those affected saw the welcome screen after rebooting their devices. Users who disabled Apple Intelligence, Apple's built-in answer to ChatGPT, should check if the feature stayed disabled after installing the updates by navigating to Settings > Apple Intelligence & Siri. // Related StoriesApple Intelligence became opt-out with the OS security updates released in late January, including iOS and iPadOS 18.3, drawing complaints from users wary of GenAI. Cupertino's take on the technology allows users to receive summarized notifications, automatically rewrite text, and generate images. However, Apple disabled news summaries after criticism from the BBC over hallucinations.
0 Yorumlar ·0 hisse senetleri ·41 Views