Apple released patches for a bug that it says “may have been exploited in an extremely sophisticated attack against specific targeted individuals,” citing a report.
The zero-day bug was found in WebKit, the browser engine powering Safari and other apps, and allowed hackers to break out of WebKit’s protective sandbox with “maliciously crafted web content,” per Apple. A sandbox is part of the operating system that, even if compromised, can keep hackers from accessing data in other parts of the system.
The patch was released on Tuesday for Macs, iPhones and iPad, Safari, and its Vision Pro headset.
Contact Us
Do you have more information about Apple vulnerabilities, or cyberattacks against Apple users? From a non-work device and network, you can contact Lorenzo Franceschi-Bicchierai securely on Signal at +1 917 257 1382, or via Telegram and Keybase @lorenzofb, or email. You also can contact TechCrunch via SecureDrop.
Apple noted that the attack was exploited against devices running software “before iOS 17.2.”
Neither the hackers nor their targets were disclosed. Apple did not respond to a request for comment.
In February, Apple used the same language — “an extremely sophisticated attack against specific targeted individuals” — for another bug, but there is no evidence the two attacks are connected. Before that February patch, Apple had never used this wording before.
You Might Also Like
Scimplify raises $40M to help manufacturers access specialty chemicals
Scimplify, an Indian startup that helps pharmaceutical and agriculture companies access a range of specialty chemicals, has raised $40 million...
North Korean government hackers snuck spyware on Android app store
A group of hackers with links to the North Korean regime uploaded Android spyware onto the Google Play app store...
Spotify says its payouts are getting better, but artists still disagree
Spotify on Tuesday released its annual Loud & Clear report, detailing information about the music streaming service’s royalty payments. While...
Elea AI is chasing the healthcare productivity opportunity by targeting pathology labs’ legacy systems
VC funding into AI tools for healthcare was projected to hit $11 billion last year — a headline figure that...