Skip to main content
See every side of every news story
Published loading...Updated

Apple fixes new zero-day flaw exploited in targeted attacks

Apple patched a critical ImageIO flaw exploited in sophisticated attacks targeting specific individuals, affecting millions of devices worldwide and enabling remote code execution.

  • Apple released emergency security updates on Wednesday to fix a zero-day vulnerability exploited in highly targeted attacks on iPhones, iPads, and Macs.
  • Apple identified the flaw, tracked as CVE-2025-43300, as an out-of-bounds write vulnerability in the Image I/O framework, possibly exploited in extremely sophisticated attacks against specific individuals.
  • The vulnerability allowed memory corruption through processing malicious image files and was patched by improving bounds checking across iOS 18.6.2, iPadOS 17.7.10, and macOS versions Ventura, Sonoma, and Sequoia.
  • Apple has acknowledged that this vulnerability might have been used in a highly advanced cyberattack aimed at particular individuals, and the company recommends installing security updates without delay.
  • These fixes form part of seven zero-days Apple patched since January 2025, highlighting ongoing risks and emphasizing the need for users to install updates promptly to prevent exploitation.
Insights by Ground AI
Does this summary seem wrong?

16 Articles

Think freely.Subscribe and get full access to Ground NewsSubscriptions start at $9.99/yearSubscribe

Bias Distribution

  • 50% of the sources are Center
50% Center

Factuality 

To view factuality data please Upgrade to Premium

Ownership

To view ownership data please Upgrade to Vantage

BleepingComputer broke the news in on Wednesday, August 20, 2025.
Sources are mostly out of (0)
News
For You
Search
BlindspotLocal