iFixScreens.com

Apple Confirms Active Zero-Day Attacks 

Exploiting Vulnerabilities in macOS Systems, Urges Immediate Updates!

Vulnerabilities Identified: JavaScriptCore: It allows malicious web content to execute arbitrary code. WebKit: It enables cross-site scripting attacks through malicious web content.

Devices Affected: Vulnerabilities reported on Intel-based Mac systems but patches are available across Apple's ecosystem, including macOS, Safari, iOS, iPadOS, and visionOS.

Update Versions: macOS Sequoia 15.1.1, Safari 18.1.1, iOS/iPadOS 17.7.2, iOS/iPadOS 18.1.1, visionOS 2.1.1.

Threat Context: Vulnerabilities tracked as CVE-2024-44308 and CVE-2024-44309. It is discovered by Google’s Threat Analysis Group, hinting at potential state-sponsored exploitation.

Risk Level: No severity scores yet, but exploitation history and zero-day status suggest they are critical.

Recommended Actions: Mac users, update now via System Settings > General > Software Update to stay secure.

iPhone/iPad Users: Navigate to Settings > General > Software Update. Older Devices: Patches may not be available for older systems.

Potential Impact: Exploitation could result in data theft, malware installation, or device compromise.