Skip to content
  • Blog Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form

Apple Patches Zero-Day Exploited in Targeted Attacks

Posted on August 21, 2025August 21, 2025 By CWS

Apple on Wednesday rushed safety updates throughout its cellular and desktop working programs to resolve a zero-day vulnerability exploited in extremely focused assaults.

Tracked as CVE-2025-43300, the safety defect is described as an out-of-bounds write bug affecting the ImageIO framework utilized in iOS, iPadOS, and macOS merchandise.

“Processing a malicious picture file could end in reminiscence corruption,” Apple explains in its advisory, noting that improved bounds checking was carried out to deal with the flaw.

The Cupertino-based tech large additionally famous that the vulnerability was exploited within the wild, however shunned offering particular info on the noticed assaults.

“Apple is conscious of a report that this problem could have been exploited in an especially subtle assault in opposition to particular focused people,” the barebone advisory reads.

The corporate’s wording means that the vulnerability may need been exploited by a industrial adware vendor.

Based on the advisory, CVE-2025-43300 was found internally by Apple, which signifies that particulars on the bug and its exploitation may not be printed quickly.

Patches for the safety gap had been included in iOS 18.6.2 and iPadOS 18.6.2, iPadOS 17.7.10, macOS Sequoia 15.6.1, macOS Sonoma 14.7.8, and macOS Ventura 13.7.8.Commercial. Scroll to proceed studying.

Though Apple says the flaw was exploited in extremely focused assaults, all customers are suggested to replace their gadgets as quickly as potential. Extra info could be discovered on the Apple safety releases web page.

The tech firm kicked off 2025 with patches for an iOS zero-day, and launched patches for different exploited flaws in February, March, and April. In late July, it resolved a Safari vulnerability that had been exploited in opposition to Chrome customers.

Associated: Elastic Refutes Claims of Zero-Day in EDR Product

Associated: Picture-Stealing Adware Sneaks Into Apple App Retailer, Google Play

Associated: Apple Patches Main Safety Flaws in iOS, macOS Platforms

Associated: Gabbard Says UK Scraps Demand for Apple to Give Backdoor Entry to Knowledge

Security Week News Tags:Apple, Attacks, Exploited, Patches, Targeted, ZeroDay

Post navigation

Previous Post: Microsoft VS Code Remote-SSH Extension Hacked to Execute Malicious Code on Developer’s Machine
Next Post: CISA Releases Four ICS Advisories Surrounding Vulnerabilities, and Exploits

Related Posts

US Braces for Cyberattacks After Joining Israel-Iran War Security Week News
Slow and Steady Security: Lessons from the Tortoise and the Hare Security Week News
Cyera Raises $540 Million to Expand AI-Powered Data Security Platform Security Week News
Thousands Hit by The North Face Credential Stuffing Attack Security Week News
Hackers Start Exploiting Critical Cisco ISE Vulnerabilities Security Week News
Madhu Gottumukkala Officially Appointed CISA Deputy Director Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Scattered Spider Hacker Sentenced to Prison
  • Password Managers Vulnerable to Data Theft via Clickjacking
  • UNC5518 Group Hacks Legitimate Websites to Inject Fake Captcha That Tricks Users to Execute Malware
  • Russian APT Exploiting 7-Year-Old Cisco Vulnerability: FBI
  • DragonForce Ransomware Attack Analysis – Targets, TTPs and IoCs

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Scattered Spider Hacker Sentenced to Prison
  • Password Managers Vulnerable to Data Theft via Clickjacking
  • UNC5518 Group Hacks Legitimate Websites to Inject Fake Captcha That Tricks Users to Execute Malware
  • Russian APT Exploiting 7-Year-Old Cisco Vulnerability: FBI
  • DragonForce Ransomware Attack Analysis – Targets, TTPs and IoCs

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News