Apple Issues Urgent Security Updates After Spyware Attacks Exploited

Apple Issues Emergency Security Updates to Fix ImageIO Zero-Day Exploited With WhatsApp Vulnerability

  • Apple released security updates for a critical flaw (CVE-2025-43300) affecting multiple devices and operating systems.
  • The flaw, an out-of-bounds write issue in ImageIO, has been exploited in targeted attacks.
  • A WhatsApp vulnerability (CVE-2025-55177) was used together with the Apple flaw to deliver spyware to less than 200 individuals.
  • Updates are available for both current and older versions of iOS, iPadOS, and macOS devices.
  • The patches also address multiple other security issues across Apple platforms, though none besides CVE-2025-43300 have been exploited in the wild.

Apple released security updates on Monday addressing a major vulnerability impacting ImageIO, a system component found in its operating systems. The flaw, tracked as CVE-2025-43300 and given a CVSS score of 8.8, could let attackers cause memory corruption simply by getting users to open a harmful image file.

- Advertisement -

According to Apple, they are aware that this flaw has been used in a “highly sophisticated attack against specific targeted individuals.” The company first provided fixes in late August through iOS 18.6.2, iPadOS 18.6.2, iPadOS 17.7.10, macOS Ventura 13.7.8, macOS Sonoma 14.7.8, and macOS Sequoia 15.6.1.

WhatsApp also identified a weakness in its apps for iOS and macOS, identified as CVE-2025-55177 (CVSS 5.4), which was paired with the Apple ImageIO bug in spyware incidents. These attacks reportedly targeted fewer than 200 people.

The most recent updates have now been extended to earlier device models, including fixes in iOS 16.7.12 and iPadOS 16.7.12 (available for iPhone 8, iPhone 8 Plus, iPhone X, and older iPad models) and iOS 15.8.5 and iPadOS 15.8.5 (covering iPhone 6s, iPhone 7, iPhone SE 1st gen, certain iPad models, and iPod touch 7th gen).

In addition to the main fixes, Apple rolled out security enhancements with recent releases including iOS 26, iPadOS 26, iOS 18.7, macOS Tahoe 26, and several others. These updates address additional security flaws including authorization problems, Sandbox escapes, privilege gains, and a Git vulnerability in Xcode that could enable remote code execution.

- Advertisement -

No other vulnerabilities listed by Apple have been reported as exploited. The company advises users to keep their software up to date for the best security protection.

✅ Follow BITNEWSBOT on Telegram, Facebook, LinkedIn, X.com, and Google News for instant updates.

Previous Articles:

- Advertisement -

Latest News

Aave Lab Offers Revenue, New Focus to DAO’s End Feud

Aave Labs has proposed a new framework directing all revenue from Aave-branded products to...

Soldier used military secrets for $150K crypto bets.

An Israeli reserve soldier and a civilian accomplice face charges for allegedly using military...

BitGo, 21Shares Expand ETF Staking & Custody Partnership

BitGo and 21Shares have expanded their partnership to provide custody, trading, and staking services...

North Korean Hackers Use Google’s Gemini AI for Cyber Recon

Google's threat intelligence team observed the North Korean hacking group UNC2970 using the generative...

Binance SAFU Fund Now Holds $1 Billion in Bitcoin

Binance has purchased $305 million in Bitcoin for its user protection fund, bringing its...

Must Read

10 Best Crypto to Mine Without Special Hardware Equipment

A lot of people mostly think that it takes a difficult process to mine cryptocurrency. today we are going to show you some of...
🔥 #AD Get 20% OFF any new 12 month hosting plan from Hostinger. Click here!