Close Menu
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
What's Hot

Turning lignocellulosic biomass into sustainable fuel for transportation

SolarWinds Web Help Desk exploited by RCE in multi-stage attack against public servers

Nominations now being accepted for the 2026 Startup Battlefield 200 | Tech Crunch

Facebook X (Twitter) Instagram
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
Facebook X (Twitter) Instagram
Fyself News
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
Fyself News
Home » Apple backport fix for CVE-2025-43300 exploited in sophisticated spyware attacks
Identity

Apple backport fix for CVE-2025-43300 exploited in sophisticated spyware attacks

userBy userSeptember 16, 2025No Comments3 Mins Read
Share Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Copy Link
Follow Us
Google News Flipboard
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link

September 16, 2025Ravi LakshmananVulnerability/Spyware

On Monday, Apple confirmed the fix to a recently patched security flaw that is actively utilised in the wild.

The vulnerability in question is CVE-2025-43300 (CVSS score: 8.8). This is an out-of-range issue with Imageio components that can lead to memory corruption when processing malicious image files.

“Apple is aware of reports that this issue could have been exploited in a highly sophisticated attack on a particular targeted individual,” the company said.

Since then, WhatsApp has admitted that vulnerabilities in messaging apps on Apple iOS and MacOS (CVE-2025-55177, CVSS score: 5.4) were chained on CVE-2025-43300 as part of a highly targeted spyware attack targeting less than 200 individuals.

This drawback was originally addressed by the iPhone manufacturer at the end of last month, but was released for the following versions with the releases of iOS 18.6.2 and iPados 18.6.2, iPados 17.7.10, Macos Ventura 13.7.8, Macos Sonoma 14.7.8, and Macos Sequoia 15.6.1 –

iOS 16.7.12 and iPads 16.7.12 – iPhone 8, iPhone 8 Plus, iPhone X, iPad 5th Generation, iPad Pro 9.7 inch, and iPad Pro 12.9 inch 1st generation IOS 15.8.5 and iPad 15.8.5 – iPhone 6s (All Models), iPhone SE (four models), iPad (fourth generation) iPodtouch (7th generation)

Audit and subsequent

The updates are now available along with iOS 26, iPados 26, iOS 18.7, iPados 18.7, Macos Tahoe 26, Macos Sequoia 15.7, Macos Socoia 14.8, TVOS 26, Visionos 26, Watchos 26, Safari 26, and Xcode 26.

CVE-2025-31255-IoKit Authorization Vulnerability that allows apps to access sensitive dataCVE-2025-43362-LaunchServices Vulnerability that allows apps to monitor keystrokes without user permissionCVE-2025-43329-Sandbox Latent Vulnerability can enable sandbox potential. – Safari vulnerability that could lead to unexpected URL redirects when dealing with malicious web content CVE-2025-43272 – Webkit vulnerability that could lead to unexpected Safari crashes when dealing with malicious web content CVE-2025-43285 – This could allow app vulnerabilities. Write down the problem in Coreaudio. This can lead to unexpected app termination when handling malicious video file CVE-2025-43316. RemoteviewServices allows apps to escape from sandbox CVE-2025-43358 – Shortcuts Permission Vulnerability that may allow shortcuts to bypass sandbox restrictions CVE-2025-43333-Gut CVE-25-43304 Spotlight Vulnerability that allows apps to obtain root privileges CVE-2025-48384 – Xcode Git Vulnerability that could lead to remote code execution when cloning maliciously created repository

There is no evidence that any of the aforementioned defects have been weaponized in actual attacks, but keeping your system up-to-date for optimal protection is always a good practice.


Source link

#BlockchainIdentity #Cybersecurity #DataProtection #DigitalEthics #DigitalIdentity #Privacy
Follow on Google News Follow on Flipboard
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Previous ArticleUSC studies reveal how PFA damages human hepatocytes
Next Article Kayak co-founders take on Calendly on the new SuperCal scheduling platform
user
  • Website

Related Posts

SolarWinds Web Help Desk exploited by RCE in multi-stage attack against public servers

February 9, 2026

AI Skill Malware, 31Tbps DDoS, Notepad++ Hack, LLM Backdoors and More

February 9, 2026

How top CISOs can overcome burnout and speed up MTTR without hiring more people

February 9, 2026
Add A Comment
Leave A Reply Cancel Reply

Latest Posts

Turning lignocellulosic biomass into sustainable fuel for transportation

SolarWinds Web Help Desk exploited by RCE in multi-stage attack against public servers

Nominations now being accepted for the 2026 Startup Battlefield 200 | Tech Crunch

Gather AI, maker of ‘curious’ warehouse drones, wins $40 million led by Keith Block’s company

Trending Posts

Subscribe to News

Subscribe to our newsletter and never miss our latest news

Please enable JavaScript in your browser to complete this form.
Loading

Welcome to Fyself News, your go-to platform for the latest in tech, startups, inventions, sustainability, and fintech! We are a passionate team of enthusiasts committed to bringing you timely, insightful, and accurate information on the most pressing developments across these industries. Whether you’re an entrepreneur, investor, or just someone curious about the future of technology and innovation, Fyself News has something for you.

Castilla-La Mancha Ignites Innovation: fiveclmsummit Redefines Tech Future

Local Power, Health Innovation: Alcolea de Calatrava Boosts FiveCLM PoC with Community Engagement

The Future of Digital Twins in Healthcare: From Virtual Replicas to Personalized Medical Models

Human Digital Twins: The Next Tech Frontier Set to Transform Healthcare and Beyond

Facebook X (Twitter) Instagram Pinterest YouTube
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
© 2026 news.fyself. Designed by by fyself.

Type above and press Enter to search. Press Esc to cancel.