Skip to content
  • Blog Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form

Apple Patches Zero-Day Exploited in Targeted Attacks

Posted on August 21, 2025August 21, 2025 By CWS

Apple on Wednesday rushed safety updates throughout its cellular and desktop working programs to resolve a zero-day vulnerability exploited in extremely focused assaults.

Tracked as CVE-2025-43300, the safety defect is described as an out-of-bounds write bug affecting the ImageIO framework utilized in iOS, iPadOS, and macOS merchandise.

“Processing a malicious picture file could end in reminiscence corruption,” Apple explains in its advisory, noting that improved bounds checking was carried out to deal with the flaw.

The Cupertino-based tech large additionally famous that the vulnerability was exploited within the wild, however shunned offering particular info on the noticed assaults.

“Apple is conscious of a report that this problem could have been exploited in an especially subtle assault in opposition to particular focused people,” the barebone advisory reads.

The corporate’s wording means that the vulnerability may need been exploited by a industrial adware vendor.

Based on the advisory, CVE-2025-43300 was found internally by Apple, which signifies that particulars on the bug and its exploitation may not be printed quickly.

Patches for the safety gap had been included in iOS 18.6.2 and iPadOS 18.6.2, iPadOS 17.7.10, macOS Sequoia 15.6.1, macOS Sonoma 14.7.8, and macOS Ventura 13.7.8.Commercial. Scroll to proceed studying.

Though Apple says the flaw was exploited in extremely focused assaults, all customers are suggested to replace their gadgets as quickly as potential. Extra info could be discovered on the Apple safety releases web page.

The tech firm kicked off 2025 with patches for an iOS zero-day, and launched patches for different exploited flaws in February, March, and April. In late July, it resolved a Safari vulnerability that had been exploited in opposition to Chrome customers.

Associated: Elastic Refutes Claims of Zero-Day in EDR Product

Associated: Picture-Stealing Adware Sneaks Into Apple App Retailer, Google Play

Associated: Apple Patches Main Safety Flaws in iOS, macOS Platforms

Associated: Gabbard Says UK Scraps Demand for Apple to Give Backdoor Entry to Knowledge

Security Week News Tags:Apple, Attacks, Exploited, Patches, Targeted, ZeroDay

Post navigation

Previous Post: Microsoft VS Code Remote-SSH Extension Hacked to Execute Malicious Code on Developer’s Machine
Next Post: CISA Releases Four ICS Advisories Surrounding Vulnerabilities, and Exploits

Related Posts

Orca Snaps Up Opus in Cloud Security Automation Push Security Week News
Exploited Vulnerability Impacts Over 80,000 Roundcube Servers Security Week News
Vibe Coding: When Everyone’s a Developer, Who Secures the Code? Security Week News
Code Execution Flaws Haunt Adobe Acrobat Reader, Adobe Commerce Security Week News
Zip Security Raises $13.5 Million in Series A Funding Security Week News
Microsoft Offers $5 Million at Zero Day Quest Hacking Contest Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Orange Belgium Data Breach Impacts 850,000 Customers
  • CISA Releases Four ICS Advisories Surrounding Vulnerabilities, and Exploits
  • Apple Patches Zero-Day Exploited in Targeted Attacks
  • Microsoft VS Code Remote-SSH Extension Hacked to Execute Malicious Code on Developer’s Machine
  • Scattered Spider Hacker Gets 10 Years, $13M Restitution for SIM Swapping Crypto Theft

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Orange Belgium Data Breach Impacts 850,000 Customers
  • CISA Releases Four ICS Advisories Surrounding Vulnerabilities, and Exploits
  • Apple Patches Zero-Day Exploited in Targeted Attacks
  • Microsoft VS Code Remote-SSH Extension Hacked to Execute Malicious Code on Developer’s Machine
  • Scattered Spider Hacker Gets 10 Years, $13M Restitution for SIM Swapping Crypto Theft

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News