logo

Apple AirPlay SDK devices at risk of takeover—make sure you update

ID: aa7e7e0d-d9a4-506b-985c-13752f435935

STIX ID: report--aa7e7e0d-d9a4-506b-985c-13752f435935

Feed Name: Malwarebytes Blog

Threat Score
78/100

Date Published: 2025-05-01

Date Updated: 2026-04-28

...
...

Researchers disclosed 23 vulnerabilities in Apple’s AirPlay SDK (resulting in 17 CVEs), including critical zero-click remote code execution and authentication bypass flaws that could allow attackers on the same network to take over AirPlay-enabled devices or intercept data; Apple released patches (iOS/iPadOS 18.4.1 and updates for MFi partners) and guidance to update devices, disable AirPlay when unused, and restrict AirPlay settings.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.