• Menu
  • Skip to main content
  • Skip to primary sidebar

The Cyber Security News

Latest Cyber Security News

Header Right

  • Latest News
  • Vulnerabilities
  • Cloud Services
Cyber Security News

Hackers are actively exploiting three Apple iOS flaws

You are here: Home / General Cyber Security News / Hackers are actively exploiting three Apple iOS flaws

The iPhone 12 showing the password screen on a coffee table beside a cup and saucer

Apple has released fixes for 3 vulnerabilities embedded in the core functioning programs of its iPhone, iPad and Apple Television set products, that have been exploited in the wild.

The three zero-day vulnerabilities discovered in Apple’s iOS, iPadOS and tvOS have been fastened with iOS 14.4, iPadOS 14.4 and tvOS 14.4, but the business verified the flaws have already been exploited by cyber criminals.

✔ Approved Seller by TheCyberSecurity.News From Our Partners
Acronis True Image 2021

Protect and backup your data using Acronis True Image. Acronis is made in Germany and is a leading brand in IT back up and secirity for years. Acronis True Image take secure and enxrypted backups from your Wdindows and macOS. With Acronis True image you will never be worried about Ransomware attacks and virus infections.

Get Acronis with 50% discount from our partner: SerialCart® (Limited Offer).

➤ Activate Your Coupon Code


The vulnerability tracked as CVE-2021-1782 paves the way for a destructive application to elevate privileges, and is current in the kernel of all three Apple systems. It has been explained as a race ailment, which has now been dealt with with improved locking. 

The two CVE-2021-1871 and CVE-2021-1870 problem the WebKit browser engine of iPadOS and iOS, and allows attackers to cause arbitrary code execution. These have been explained as a logic issue that was dealt with with improved limitations. 

The devices influenced contain iPhone 6s and later, iPad Air 2 and later, iPad mini 4 and later, iPod contact (7th era), as very well as Apple Tv set 4K and Apple Tv High definition. The firm, nevertheless, declined to disclose how wide the attack was, or who especially has been qualified by hackers exploiting these flaws.

The flaws were being flagged to Apple by an nameless researcher, and, however, no even more facts have been built out there. 

“Apple admitting to iPhone security vulnerabilities is about as scarce as anyone receiving struck by lightning. So kudos for them for releasing iOS 14.4 with patches for the 3 discovered bugs,” explained the main security officer at Cybereason, Sam Curry.

“What we would not know for some time is how popular the risk is. That information and facts is reportedly forthcoming. I say to Apple, don’t stop there as transparency is very critical due to the fact you are one particular of the biggest companies in the world and tens of thousands and thousands of men and women have confidence in you to get believe in suitable.”

Curry included that Apple really should dig deeper into the investigation and occur up with new countermeasures and controls.


Some components of this article are sourced from:
www.itpro.co.uk

Previous Post: «Cyber Security News DDoS Attacks Surge in 2020 Due to #COVID19
Next Post: Using the Manager Attribute in Active Directory (AD) for Password Resets Using The Manager Attribute In Active Directory (ad) For Password»

Reader Interactions

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Primary Sidebar

Recent Posts

  • UK Spies Called on to Help in Fraud Fight
  • Using the Manager Attribute in Active Directory (AD) for Password Resets
  • Hackers are actively exploiting three Apple iOS flaws
  • DDoS Attacks Surge in 2020 Due to #COVID19
  • Apple Warns of 3 iOS Zero-Day Security Vulnerabilities Exploited in the Wild
  • In the Wake of the SolarWinds Hack, Here’s How Businesses Should Respond
  • Phishing scheme shows CEOs may be ‘most valuable asset,’ and ‘greatest vulnerability’
  • BEC attack techniques exploit Microsoft 365 messages
  • Nvidia Squashes High-Severity Jetson DoS Flaw
  • The cyber ‘journeymen’: Apprentices may be the solution to the skills gap

Copyright © TheCyberSecurity.News, All Rights Reserved.