Xorte logo

News Markets Groups

USA | Europe | Asia | World| Stocks | Commodities



Add a new RSS channel

 
 


Keywords

2025-02-10 22:42:37| Engadget

A new iPhone update patches a flaw that could allow an attacker to turn off a nearly seven-year-old USB security feature. Apples release notes for iOS 18.3.1 and iPadOS 18.3.1 say the bug, which allowed the deactivation of USB Restricted Mode, may have been exploited in an extremely sophisticated attack against specific targeted individuals. The release notes describe the now-patched security flaw as allowing a physical attack, which suggests the attacker needed the device in hand to exploit it. So, unless your device was hijacked by extremely sophisticated attackers, there was nothing to panic about even before Mondays update. USB Restricted Mode, introduced in iOS 11.4.1, prevents USB accessories from accessing your devices data if it hasnt been unlocked for an hour. The idea is to protect your iPhone or iPad from law enforcement devices like Cellebrite and Graykey. Its also the reason for the message asking you to unlock your device before connecting it to a Mac or Windows PC. Aligned with its typical policy, Apple didnt detail who or what entity used the attack in the wild, only noting that the company is aware of a report that this issue may have been exploited. Security researcher Bill Marczak of the University of Torontos Citizen Lab reported the flaw. In 2016, while in grad school, he discovered the iPhones first known zero-day remote jailbreak, which a cyberwarfare company sold to governments. You can make sure USB Restricted Mode is activated by heading to Settings > Face ID (or Touch ID) & Passcode. Scroll down to Accessories in the list and ensure the toggle is off, which it is by default. Somewhat confusingly, toggling the setting off means the security feature is on because it lists features with allowed access. As usual, you can install the update by heading to Settings > General > Software Update on your iPhone or iPad.This article originally appeared on Engadget at https://www.engadget.com/cybersecurity/apple-patches-iphone-exploit-that-allowed-for-extremely-sophisticated-attack-214237852.html?src=rss


Category: Marketing and Advertising

 

Latest from this category

11.03Microsoft is phasing out its Remote Desktop app in May
11.03Roomba's iRobot 205 robovac can go eight weeks without being emptied
11.03Security researchers aren't buying Musk's spin on the cyberattack that took down X
11.03Rivian's latest update offers hands-free highway driving
11.03Pocket Casts makes its web player and desktop apps usable without a subscription
11.03The studio that (technically) made Disco Elysium has a new game in the works
11.03How to watch the NVIDIA GTC 2025 keynote with CEO Jensen Huang
11.03Waymo expands to more cities in the Bay Area
Marketing and Advertising »

All news

12.03Avoid trouble spots, stay cautious amidst volatility: Daljeet Kohli
12.03Stocks to buy: IndusInd Bank, PC Jewellers and Mold-Tek on investors' radar
12.03Asian stocks rise, Australia close to correction
12.03ET In The Classroom: Balanced Advantage Funds
12.03Is the US really heading into a recession?
12.03ET Explainer: Internal trades & a hedge too far
12.03Indian equities to recover lost ground in 2025: Morgan Stanley
12.03IndusInd & Out: Rs 19,000 crore lost in a day
More »
Privacy policy . Copyright . Contact form .