Apple issues emergency patches for zero-day vulnerabilities on iOS and macOS.

TL;DR Summary
Apple has released patches for its iOS, iPadOS, and macOS operating systems and Safari web browser to address two zero-day vulnerabilities found by Google and Amnesty International that were already exploited in the wild. The bugs, CVE-2023-28205 and CVE-2023-28206, could allow snoops to execute arbitrary code with kernel privileges, enabling them to steal data and spy on targets. The updates are available for a range of devices, and Apple credited researchers from Google and Amnesty International with finding and reporting the holes. The patches come after reports of two campaigns in which iOS and Android users had spyware slipped on their devices.
- Apple squashes iOS, macOS zero-day bugs already exploited by snoops The Register
- Apple releases emergency security updates to patch iPhone, iPad and Mac zero-day flaws Tom's Guide
- CISA orders govt agencies to update iPhones, Macs by May 1st BleepingComputer
- Pair of Apple Zero-Days Under Active Exploit; Patch & Update Accordingly DARKReading
- US Agency Urges Patching For Pair Of Apple OS Vulnerabilities CRN
Reading Insights
Total Reads
0
Unique Readers
14
Time Saved
2 min
vs 3 min read
Condensed
79%
483 → 102 words
Want the full story? Read the original article
Read on The Register