Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Apple Patches Safari Vulnerability Flagged as Exploited Against Chrome

Apple Patches Safari Vulnerability Flagged as Exploited Against Chrome

Posted on July 30, 2025July 30, 2025 By CWS

Apple on Tuesday introduced patches for dozens of vulnerabilities throughout its cell and desktop working methods, together with fixes for a bug exploited within the wild.

Tracked as CVE-2025-6558, the exploited flaw was disclosed in mid-July, when Google patched it in Chrome, crediting its Menace Evaluation Group for reporting it and warning that it had been focused in assaults as a zero-day.

The safety defect is described as an inadequate validation of untrusted enter in Chrome’s ANGLE and GPU graphics elements that may be exploited remotely utilizing crafted HTML pages to flee the browser’s sandbox.

One week after Google rolled out a Chrome 138 replace to resolve the bug, the US cybersecurity company CISA added it to its Recognized Exploited Vulnerabilities (KEV) catalog, urging federal businesses to resolve it by August 12.

There nonetheless don’t look like any public reviews describing assaults involving the exploitation of CVE-2025-6558.

Apple’s recent spherical of iOS and macOS safety updates contains fixes for CVE-2025-6558, which impacts WebKit and will result in a Safari crash when visiting a web page containing malicious content material. There doesn’t appear to be any proof that the vulnerability has been exploited in opposition to Safari customers.

“This can be a vulnerability in open supply code and Apple Software program is among the many affected tasks,” Apple defined. 

In complete, the Cupertino-based firm rolled out patches for 13 safety defects in WebKit, warning that they might be exploited to carry out XSS assaults, leak delicate consumer data, trigger reminiscence corruption, crash Safari, or trigger a denial-of-service (DoS) situation.Commercial. Scroll to proceed studying.

Whereas WebKit acquired the biggest variety of fixes, different Apple platform elements bought patched in opposition to a fair proportion of flaws too, together with AppleMobileFileIntegrity, Mannequin I/O, and PackageKit.

In line with Jamf VP Josh Stein, one other newly patched Apple vulnerability value mentioning is CVE-2025-43223. Impacting the CFNetwork element of each macOS and iOS, it permits non-privileged customers to change restricted community settings.

“Apple’s CFNetwork is the framework that handles community communication, together with HTTP, HTTPS, and different protocols. Due to this fact, any vulnerability within the framework poses important safety dangers,” Stein instructed SecurityWeek.

Apple mounted 87 CVEs with the recent macOS Sequoia 15.6 replace, and included patches for 29 safety defects within the newly rolled out iOS 18.6 and iPadOS 18.6 updates.

macOS Sonoma 14.7.7 was launched with fixes for 50 bugs, macOS Ventura 13.7.7 with patches for 41 points, iPadOS 17.7.9 addressed 19 flaws, watchOS 11.6 resolved 21, whereas tvOS 18.6 and visionOS 2.6 mounted 24 every.

Customers are suggested to replace their cell, desktop, and wearable units as quickly as doable. Further data on the resolved vulnerabilities could be discovered on Apple’s safety releases web page.

Associated: Sploitlight: macOS Vulnerability Leaks Delicate Data

Associated: Apple Patches Main Safety Flaws in iOS, macOS Platforms

Associated: Picture-Stealing Spyware and adware Sneaks Into Apple App Retailer, Google Play

Associated: North Korean Hackers Use Pretend Zoom Updates to Set up macOS Malware

Security Week News Tags:Apple, Chrome, Exploited, Flagged, Patches, Safari, Vulnerability

Post navigation

Previous Post: ChatGPT Agent Bypasses Cloudflare “I am not a robot” Verification Checks
Next Post: Tonic Security Launches With $7 Million in Seed Funding

Related Posts

Russian APT Switches to New Backdoor After Malware Exposed by Researchers Russian APT Switches to New Backdoor After Malware Exposed by Researchers Security Week News
Supply Chain Attack Targets VS Code Extensions With ‘GlassWorm’ Malware Supply Chain Attack Targets VS Code Extensions With ‘GlassWorm’ Malware Security Week News
Beyond GenAI: Why Agentic AI Was the Real Conversation at RSA 2025 Beyond GenAI: Why Agentic AI Was the Real Conversation at RSA 2025 Security Week News
Zast.AI Secures  Million for Advanced Code Security Zast.AI Secures $6 Million for Advanced Code Security Security Week News
Gravwell Closes .4M Funding Round to Expand Data Analytics and Security Platform Gravwell Closes $15.4M Funding Round to Expand Data Analytics and Security Platform Security Week News
Forget Predictions: True 2026 Cybersecurity Priorities From Leaders Forget Predictions: True 2026 Cybersecurity Priorities From Leaders Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Muddled Libra Exploits VMware vSphere in Cyber Attack
  • Feiniu NAS Devices Targeted in Major Botnet Attack
  • Rapid SSH Worm Exploits Linux Systems with Credential Stuffing
  • Odido Telecom Hacked: 6.2 Million Accounts Compromised
  • Lazarus Group Targets npm and PyPI with Malicious Packages

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Muddled Libra Exploits VMware vSphere in Cyber Attack
  • Feiniu NAS Devices Targeted in Major Botnet Attack
  • Rapid SSH Worm Exploits Linux Systems with Credential Stuffing
  • Odido Telecom Hacked: 6.2 Million Accounts Compromised
  • Lazarus Group Targets npm and PyPI with Malicious Packages

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News