Apple Rushes Out Zero-Day Fixes for Actively Attacked Macs
Apple releases urgent security updates for macOS, iOS, and iPadOS to patch two zero-day vulnerabilities actively exploited in cyberattacks against Mac users. The bugs, discovered by Google's government-hacking investigators, target the WebKit browser engine.
Apple releases urgent security updates for macOS, iOS, and iPadOS to patch two zero-day vulnerabilities that attackers actively exploit against Mac users. The tech giant pushes out macOS Sequoia 15.1.1 and iOS 18.1.1, labeling the updates as recommended for all users to protect their devices from ongoing threats.
Google's Threat Analysis Group discovers and reports these WebKit and JavaScriptCore vulnerabilities, suggesting potential government involvement in the cyberattacks. Hackers exploit these web browser engines by tricking users into processing maliciously crafted web content, which allows them to execute arbitrary code and plant malware on targeted devices.
The exact scale of the attacks remains unknown, and Apple does not comment on the situation. Because these zero-day flaws target the core technology behind the Safari browser, users leave their private data highly vulnerable if they delay installing the new patches.