Siri Bug Enables Data Theft on Locked Apple Devices

July 31, 2024 at 03:32PM Apple released updates for its products to address vulnerabilities in Siri and digital assistants across its devices. The updates aim to prevent unauthorized access to sensitive data, such as contacts, even when the device is locked. Users are advised to update to iOS 17.6 and iPadOS 17.6 to mitigate these … Read more

Hardware-level Apple Silicon vulnerability can leak cryptographic keys

March 22, 2024 at 11:06AM A new side-channel vulnerability, GoFetch, has been discovered in Apple Silicon processors, allowing malicious apps to extract cryptographic keys by exploiting the DMP feature. The vulnerability affects Apple M1, M2, and M3 chips, as well as Intel’s 13th Gen Raptor Lake microarchitecture. Disabling DMP may degrade performance, and third-party cryptographic … Read more

China loathes AirDrop so much it’s publicized an old flaw in Apple’s P2P protocol

January 14, 2024 at 10:05PM In June 2023, China announced that operators of short-distance ad hoc networks must adhere to socialist principles and require users to disclose their real-world identities. The focus was on technologies like Wi-Fi hotspots and AirDrop, which were used by protestors during COVID-19 lockdowns. Chinese authorities acknowledged AirDrop’s vulnerability to surveillance … Read more

Kaspersky reveals previously unknown hardware ‘feature’ used in iPhone attacks

December 28, 2023 at 10:54AM Kaspersky’s GReAT team uncovered a hidden iPhone feature, exploited through CVE-2023-38606, allowing attackers to evade memory protection. The issue affected iPhones on iOS up to 16.6 and may have been for testing or debugging. The team’s thorough analysis revealed a sophisticated attack vector, demonstrating how even advanced hardware protection can … Read more