Apple fixes zero-day exploited in 'extremely sophisticated' attacks
ID: caa9790f-200d-594d-917a-ebe257836d42
STIX ID: report--caa9790f-200d-594d-917a-ebe257836d42
Feed Name: Bleeping Computer
Threat Score
Apple released emergency security updates to patch a zero-day (CVE-2025-24200) that could be abused to bypass USB Restricted Mode on supported iPhones and iPads; Citizen Lab reported this vulnerability was exploited in targeted, "extremely sophisticated" attacks against specific individuals. The advisory lists impacted device models, urges immediate installation of iOS/iPadOS updates, and contextualizes the flaw alongside prior zero-days used in spyware campaigns.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
