iOS under attack: Apple issues emergency fix for exploited zero-day bugs

iOS under attack: Apple issues emergency fix for exploited zero-day bugs

Updated on 17 Dec 2025 Category: Technology • Author: Scoopliner Editorial Team
हिंदी में सुनें

Listen to this article in Hindi

गति:

Apple has released emergency security updates for iOS and other operating systems to patch actively exploited zero-day vulnerabilities. Update immediately.


Apple has released emergency security updates to address actively exploited zero-day vulnerabilities in iOS and other operating systems. The company described the attacks as sophisticated, targeting specific individuals, especially those using older iOS versions rather than the latest iOS 26.

The vulnerabilities are located in WebKit, the browser engine used by all Apple devices. Apple rolled out the patches after confirming that these flaws were actively being exploited in real-world attacks using a combined attack chain.

One of the flaws, CVE-2025-43529, is a remote code execution vulnerability caused by a use-after-free error. This vulnerability can be triggered by maliciously crafted web content and was discovered by Google’s Threat Analysis Group.

The second vulnerability, CVE-2025-14174, involves memory corruption and was jointly identified by researchers at Google and Apple.

Interestingly, these vulnerabilities appear connected to a zero-day flaw recently patched by Google in Chrome. Initially tracked internally under code 466192044 without a CVE number, it was later assigned CVE-2025-14174, the same identifier now used for the WebKit flaw that Apple has addressed.

Security experts are urging users to update their devices immediately to mitigate these risks. A security manager at JAMF, a mobile device management company, recommends manually installing the fix by going to Settings > General > Software Update. They also advise against relying on pop-ups or links for updates and being cautious about depending solely on automatic updates immediately after a patch is released.

Apple has confirmed that these vulnerabilities have been resolved in iOS 26.2, iPadOS 26.2, iOS 18.7.3, iPadOS 18.7.3, macOS Tahoe 26.2, tvOS 26.2, watchOS 26.2, visionOS 26.2, and Safari 26.2.

Given that WebKit is used throughout the Apple ecosystem, users should update all their devices, including iPhones, iPads, Macs, Apple Watches, and Apple TVs.

The recent discovery of these back-to-back zero-day flaws highlights the importance of keeping operating systems, browsers, and apps updated to the latest versions to minimize the risk of exploitation.

Users might also consider running additional security scans using reputable anti-malware software for Mac devices.

Cybersecurity experts emphasize that each new zero-day vulnerability serves as a clear signal to update all devices immediately for safety.

Source: Báo VietNamNet   •   17 Dec 2025

Related Articles

Galaxy Z Fold 8: Two Potential Advantages Over Foldable iPhone
Galaxy Z Fold 8: Two Potential Advantages Over Foldable iPhone

A new report suggests Samsung's Galaxy Z Fold 8 could surpass Apple's first foldable iPhone in display size and camera quality when …

Source: SamMobile | 17 Dec 2025
Realme 16 Pro Series Design Revealed Ahead of Launch
Realme 16 Pro Series Design Revealed Ahead of Launch

The Realme 16 Pro and 16 Pro+ design has been revealed before its January 6 launch. See the new Urban Wild Design, …

Source: GSMArena.com | 17 Dec 2025
iPhone 16 drops to Rs 40,990, Galaxy S25 Ultra to Rs 69,999 in Croma’s Cromtastic December sale
iPhone 16 drops to Rs 40,990, Galaxy S25 Ultra to Rs 69,999 in Croma’s Cromtastic December sale

Croma's year-end Cromtastic December Sale offers discounts on smartphones like iPhone 16 & Samsung Galaxy S25 Ultra, laptops, TVs, and appliances.

Source: Moneycontrol | 17 Dec 2025
OnePlus 15R and Pad Go 2 Set for India Debut Tonight: What to Expect
OnePlus 15R and Pad Go 2 Set for India Debut Tonight: What to Expect

OnePlus is launching the 15R smartphone and Pad Go 2 tablet in India tonight. Get ready for the livestream, specs, and expected …

Source: The Hans India | 17 Dec 2025
OnePlus 15R and OnePlus Pad Go 2 Launched in India: Price, Specs, and Availability
OnePlus 15R and OnePlus Pad Go 2 Launched in India: Price, Specs, and Availability

OnePlus has released the OnePlus 15R smartphone and Pad Go 2 tablet in India. Find details on pricing, specifications, and when they …

Source: The Hindu | 17 Dec 2025
OnePlus 15R and OnePlus Pad Go 2 launching tomorrow, everything we know so far
OnePlus 15R and OnePlus Pad Go 2 launching tomorrow, everything we know so far

OnePlus is launching the 15R phone and Pad Go 2 tablet on December 17 in India. Get the details on specs, features …

Source: India Today | 17 Dec 2025
← Back to Home

QR Code Generator