Apple launched the newest updates for its iPhone, iPad, and Mac working techniques on Monday, which included switching on Apple Intelligence by default for newer gadgets.
As a part of this batch of software program updates, Apple additionally launched a number of patches fixing safety bugs, together with a zero-day bug that “could have been actively exploited” — that means hackers have been utilizing it to compromise gadgets — towards customers with iPhones working software program older than iOS 17.2, which was launched in December 2023.
The bug was present in Core Media, the media engine that powers a variety of Apple gadgets, and is now mounted throughout its product line, together with iPhones, iPads, Macs, Apple TVs, Apple Watches, and its mixed-reality headset, Vision Pro. Apple mentioned hackers may have “elevated privileges” by exploiting a reminiscence corruption bug, which might have allowed broader entry to a tool’s knowledge.
Apple didn’t credit score the bug discovery to any researcher, because it typically — however not at all times — does. A spokesperson for Apple didn’t instantly remark when requested for extra particulars about who exploited the bug and towards whom.
This is the primary bug present in iOS this 12 months that was exploited within the wild. For reference, Apple mounted at the very least seven bugs that “could have been actively exploited” in 2024, based on TechCrunch’s working tally.