Workflow
Apple fixes new security flaw used in ‘extremely sophisticated attack'
AppleApple(US:AAPL) TechCrunch·2025-03-11 19:16

Core Insights - Apple has released patches for a zero-day vulnerability in WebKit, which could have been exploited in a sophisticated attack targeting specific individuals [1][4] - The vulnerability allowed hackers to escape WebKit's protective sandbox, potentially compromising user data [1] - The patch was made available for various Apple devices, including Macs, iPhones, iPads, Safari, and the Vision Pro headset [2] Vulnerability Details - The zero-day bug was identified in WebKit, the browser engine used by Safari and other applications [1] - Apple indicated that the attack was effective against devices running software prior to iOS 17.2 [3] Historical Context - In February, Apple described a similar attack as "an extremely sophisticated attack against specific targeted individuals," although there is no evidence linking the two incidents [4] - This specific language had not been used by Apple prior to the February incident [4]