logo

Apple fixes zero-day exploited in 'extremely sophisticated' attacks

ID: caa9790f-200d-594d-917a-ebe257836d42

STIX ID: report--caa9790f-200d-594d-917a-ebe257836d42

Feed Name: Bleeping Computer

Threat Score
78/100

Date Published: 2025-02-10

Date Updated: 2026-04-20

Author: Sergiu Gatlan

...
...

Apple released emergency security updates to patch a zero-day (CVE-2025-24200) that could be abused to bypass USB Restricted Mode on supported iPhones and iPads; Citizen Lab reported this vulnerability was exploited in targeted, "extremely sophisticated" attacks against specific individuals. The advisory lists impacted device models, urges immediate installation of iOS/iPadOS updates, and contextualizes the flaw alongside prior zero-days used in spyware campaigns.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.