Close Menu
Edu Expertise Hub
    Facebook X (Twitter) Instagram
    Tuesday, November 4
    • About us
    • Contact
    • Submit Coupon
    Facebook X (Twitter) Instagram YouTube
    Edu Expertise Hub
    • Home
    • Udemy Coupons
    • Best Online Courses and Software Tools
      • Business & Investment
      • Computers & Internet
      • eBusiness and eMarketing
    • Reviews
    • Jobs
    • Latest News
    • Blog
    • Videos
    Edu Expertise Hub
    Home » Latest News » Apple iOS update fixes new iPhone zero-day flaw
    Latest News

    Apple iOS update fixes new iPhone zero-day flaw

    TeamBy TeamAugust 25, 2025No Comments3 Mins Read1 Views
    Facebook Twitter Pinterest LinkedIn Telegram Tumblr Email
    Apple iOS update fixes new iPhone zero-day flaw
    Share
    Facebook Twitter LinkedIn Pinterest Email


    Apple has pushed another update to its mobile operating systems, iOS and iPadOS, to address a newly-discovered zero-day that is already being exploited by threat actors in the wild to enable so-called zero-click attacks.

    Tracked as CVE-2025-43300, the flaw is an out-of-bounds write issue in the ImageIO framework – which is used to enable applications to read and write the majority of image file formats.

    If successfully exploited, processing a maliciously crafted-image file results in memory corruption on the target device.

    “Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals,” Apple said in its customarily sparse advisory.

    The update, which takes iOS and iPadOS to version 18.6.2, addresses this problem with improved bounds checking.

    Adam Boynton, senior security strategy manager for EMEIA at Jamf, an Apple device management specialist, explained that the flaw could potentially be used by threat actors to compromise the device and enable the execution of malicious code.

    In these zero-click attacks, malicious payloads are generally delivered via channels such as text message, email, or messaging apps. These payloads contain data packets that are designed to trigger the vulnerability automatically, without any user interaction taking place – hence the term zero-click.

    This stealthy methodology means zero-clicks are tricky for enterprise defenders to get to grips with, not least because they are hard to detect and bypass end-user training, but also because they often leave very little in terms of forensic evidence and can operate without setting off any security alerts.

    Zero-click attacks have also been proven to be highly effective against high-value targets within businesses, and additionally for certain categories of organisations and individuals at risk of targeted cyber-espionage, such as non-governmental organisations (NGOs), journalists and media, and activists and politicians.

    “Apple has indicated that this vulnerability has been exploited in sophisticated, targeted attacks, which typically focus on individuals with highly valued access or contacts, such as journalists, lawyers, activists, and government officials,” said Boynton.

    “While Apple has not confirmed whether this specific flaw was linked to spyware, similar vulnerabilities in ImageIO and WebKit have previously been used in Pegasus campaigns.”

    Mitigating zero-click attacks

    Sylvain Cortes, vice president of strategy at Hackuity, a vulnerability management platform, said: “With the vulnerability being actively exploited, everyone should check their iPhones immediately. Organisations handling Apple devices need to be able to identify and update all affected devices immediately, especially if they operate in at-risk fields like the legal, media and public sectors.” 

    When responding to zero-click vulnerabilities, security professionals can help turn the odds in their favour not only by aggressively patching against them, but also by keeping up-to-date on threat intelligence, deploying defence-in-depth strategies with layered security protections, and introducing technologies such as micro-segmentation, endpoint detection and response (EDR) tools, and mobile device management (MDM) services.

    Meanwhile, individual Apple users can check if their iPhones or iPads are running the updated version 18.6.2 by navigating to Settings, General, and Software Update on their devices.

    The update to version 18.6.2 will likely be among the final releases to take place ahead of the anticipated unveiling of iOS 26, which still looks to be on track for mid-September. This will accompany the launch of the iPhone 17.

    This post is exclusively published on eduexpertisehub.com

    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Team

      Related Posts

      The triple Rs of scholastic esports

      November 4, 2025

      CISOs in court: Balancing cyber resilience and legal accountability

      November 3, 2025

      Schools Tapped Young Adults to Serve as Mental Health Navigators. What Happened Next?

      November 3, 2025

      Smart strategies to help students find the perfect college

      November 3, 2025

      Cyber agencies co-sign Exchange Server security guide

      November 2, 2025

      Why Standards and Credentials Matter in Dual Enrollment

      November 2, 2025
      Courses and Software Tools

      Welcome to AI: A Human Guide to Artificial Intelligence

      March 20, 2024124 Views

      Extreme Privacy: What It Takes to Disappear

      August 24, 202475 Views

      Modern C++ Programming Cookbook: Master Modern C++ with comprehensive solutions for C++23 and all previous standards

      September 18, 202433 Views

      Meebook E-Reader M7 | 6.8′ Eink Carta Screen | 300PPI Smart Light | Android 11 | Ouad Core Processor | Out Speaker | Support Google Play Store | 3GB+32GB Storage | Micro-SD Slot | Gray

      August 19, 202429 Views

      HR from the Outside In: Six Competencies for the Future of Human Resources

      May 20, 202525 Views
      Reviews

      Cisco CBROPS Cybersecurity Operations Fundamentals Exams | Udemy Coupons 2025

      November 4, 2025

      Air Traffic Manager – Renton, WA (RNT)

      November 4, 2025

      The triple Rs of scholastic esports

      November 4, 2025

      Securing Email with Cisco Email Security Appliance (SESA) | Udemy Coupons 2025

      November 4, 2025

      Traveling Store Merchandiser

      November 4, 2025
      Stay In Touch
      • Facebook
      • YouTube
      • TikTok
      • WhatsApp
      • Twitter
      • Instagram
      Latest News

      The triple Rs of scholastic esports

      November 4, 2025

      CISOs in court: Balancing cyber resilience and legal accountability

      November 3, 2025

      Schools Tapped Young Adults to Serve as Mental Health Navigators. What Happened Next?

      November 3, 2025

      Smart strategies to help students find the perfect college

      November 3, 2025

      Cyber agencies co-sign Exchange Server security guide

      November 2, 2025
      Latest Videos

      ETHICAL HACKING,CYBERSECURITY-ALL YOU WANT TO KNOW-CEH CERTIFICATION|CAREER PATHWAY|Dr.BRIJESH JOHN

      November 3, 2025

      No Growth in Finance Career? Try CMA

      November 2, 2025

      Building a Career in Digital Marketing | Digital Marketing

      November 1, 2025

      Minecraft RTX: What if ~82 BODYGUARD #shorts

      October 31, 2025

      Meesho , Cometchat , Zeotap , DEPT |2021, 2022 , 2023 , 2024 jobs

      October 30, 2025
      Latest Jobs

      Air Traffic Manager – Renton, WA (RNT)

      November 4, 2025

      Traveling Store Merchandiser

      November 4, 2025

      BFH Data Base/CAH Budget Coordinator – Management Analyst 3

      November 4, 2025

      Human Resource Generalist

      November 4, 2025

      Operating Room RN

      November 3, 2025
      Legal
      • Home
      • Privacy Policy
      • Cookie Policy
      • Terms and Conditions
      • Disclaimer
      • Affiliate Disclosure
      • Amazon Affiliate Disclaimer
      Latest Udemy Coupons

      Advanced Program in Human Resources Management | Udemy Coupons 2025

      April 5, 202536 Views

      Mastering Maxon Cinema 4D 2024: Complete Tutorial Series | Udemy Coupons 2025

      August 22, 202436 Views

      ISO 9001:2015 – Quality Management System Internal Auditor | Udemy Coupons 2025

      May 5, 202535 Views

      Diploma in Aviation, Airlines, Air Transportation & Airports | Udemy Coupons 2025

      March 21, 202531 Views

      Time Management and Timeboxing in Business, Projects, Agile | Udemy Coupons 2025

      April 2, 202527 Views
      Blog

      How to Leave a Positive Impression

      November 3, 2025

      How to Show Professional Appreciation

      November 2, 2025

      How to Strengthen Business Relationships

      November 1, 2025

      How to Evaluate a Company During Your Office Tour (What to Look For) –

      October 31, 2025

      Template for Volunteer Position Acceptance Letter (With Samples & Tips)

      October 30, 2025
      Facebook X (Twitter) Instagram Pinterest YouTube Dribbble
      © 2025 All rights reserved!

      Type above and press Enter to search. Press Esc to cancel.

      We use cookies on our website to give you the most relevant experience by remembering your preferences and repeat visits. By clicking “Accept”, you consent to the use of ALL the cookies.
      .
      SettingsAccept
      Privacy & Cookies Policy

      Privacy Overview

      This website uses cookies to improve your experience while you navigate through the website. Out of these, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities of the website. We also use third-party cookies that help us analyze and understand how you use this website. These cookies will be stored in your browser only with your consent. You also have the option to opt-out of these cookies. But opting out of some of these cookies may affect your browsing experience.
      Necessary
      Always Enabled
      Necessary cookies are absolutely essential for the website to function properly. This category only includes cookies that ensures basic functionalities and security features of the website. These cookies do not store any personal information.
      Non-necessary
      Any cookies that may not be particularly necessary for the website to function and is used specifically to collect user personal data via analytics, ads, other embedded contents are termed as non-necessary cookies. It is mandatory to procure user consent prior to running these cookies on your website.
      SAVE & ACCEPT