Christian M.
banner
t5rockton.bsky.social
Christian M.
@t5rockton.bsky.social
Offroad IT Sec.
Ich habe keine Hoffnung. Aber ich könnte mich ja irren
Reposted by Christian M.
this is mesmerizing
November 25, 2025 at 6:31 AM
November 10, 2025 at 9:15 AM
Reposted by Christian M.
CISA Warns of Apple macOS, iOS, tvOS, Safari, and watchOS Vulnerability Exploited in Attacks
CISA Warns of Apple macOS, iOS, tvOS, Safari, and watchOS Vulnerability Exploited in Attacks
The Cybersecurity and Infrastructure Security Agency (CISA) has issued a high-priority alert about a critical vulnerability in multiple Apple products. Tracked as CVE-2022-48503 , this unspecified issue in the JavaScriptCore engine could allow attackers to execute arbitrary code simply by processing malicious web content. The flaw affects macOS, iOS, tvOS, Safari, and watchOS, putting millions of users at risk of remote exploitation. First disclosed in 2022, the vulnerability has resurfaced in active attacks, according to CISA’s Known Exploited Vulnerabilities (KEV) catalog. Security researchers note that while Apple patched it in subsequent updates, unpatched or end-of-life (EoL) systems remain prime targets. “This isn’t just a relic of the past threat actors are weaponizing old bugs against outdated devices,” said a CISA spokesperson in the advisory. The agency emphasized that the vulnerability’s severity stems from its potential for full system compromise, enabling data theft , ransomware deployment, or further malware spread. Although no direct ties to ransomware campaigns have been confirmed, the unknown exploitation history underscores the urgency for immediate action. Widespread Impact on Apple’s Ecosystem The vulnerability’s broad reach spans Apple’s core operating systems and browser. JavaScriptCore, the engine powering Safari and other web rendering in iOS, macOS, tvOS, and watchOS, processes dynamic web elements like scripts and animations. An attacker could craft a booby-trapped webpage or email link to trigger the flaw, bypassing traditional defenses. Older devices, such as those running iOS 15 or earlier macOS versions, are particularly vulnerable if they haven’t received updates. CISA warns that end-of-service (EoS) products no longer supported by Apple offer no patch path, leaving users exposed indefinitely. For cloud-integrated services, CISA references Binding Operational Directive (BOD) 22-01, urging federal agencies and critical infrastructure operators to apply mitigations or retire affected systems. Private users face similar risks, especially in hybrid work environments where personal Apple devices handle sensitive data. CISA’s directive is clear: Update to the latest vendor-patched versions immediately. Apple released fixes in security updates dating back to early 2023, but users must verify their systems via Settings > General > Software Update. If mitigations aren’t feasible, particularly for EoL hardware, the agency advises discontinuing use to avoid exploitation. Network defenders should monitor for anomalous JavaScript activity and enforce endpoint detection rules targeting code execution attempts. Recent reports indicate that attacks on Apple platforms are surging by 20% year over year, making staying vigilant non-negotiable. Organizations delaying patches risk cascading breaches, while individuals should prioritize updates to safeguard their digital lives. Follow us on Google News , LinkedIn , and X for daily cybersecurity updates. Contact us to feature your stories. The post CISA Warns of Apple macOS, iOS, tvOS, Safari, and watchOS Vulnerability Exploited in Attacks appeared first on Cyber Security News .
cybersecuritynews.com
October 21, 2025 at 3:50 PM
Blutspende. Mal wieder… recht voll heute
October 13, 2025 at 3:34 PM
Schön war‘s #mwotw #m.s
October 12, 2025 at 9:46 PM
Krefeld KuFa heute: m. walking on the water
October 12, 2025 at 5:41 AM
Schiebetürenblick
September 15, 2025 at 5:36 AM
Mittagessen auf der Assietta
September 14, 2025 at 12:58 PM
Frühstück Fort Central
September 13, 2025 at 9:07 AM
3 Wochen Pyrenäen - diesmal Ost-West. Auf dem Rückweg nehme ich nun noch einen klitzekleinen Teil der Westalpen unter die Räder
September 12, 2025 at 3:10 PM
Blick nach Nizza
September 12, 2025 at 1:59 PM
So schön
September 11, 2025 at 11:19 AM
Nach einer Gewitternacht
September 9, 2025 at 5:52 AM
Frühstück mit Blick und Ruhe
September 8, 2025 at 5:21 AM
Ruhetag. Nächstes Buch durch: Weltreise Teil 1 - Kradvagabunden
September 6, 2025 at 8:59 AM
Einmal ADAC. Der Keilrippenriemen hat sich zerlegt.
September 4, 2025 at 8:11 AM
2170Hm
September 3, 2025 at 9:53 AM
Fast erschreckend leise
September 3, 2025 at 5:42 AM
Nach einem Gewitterabend und -nacht nun erstmal spät frühstücken
September 1, 2025 at 7:17 AM
Zweites Urlaubsbuch durch: Irgendwo hinter dem Horizont. Christopher Many
August 31, 2025 at 2:31 PM
m=n
August 31, 2025 at 12:10 PM
Trenn-MOSFET zickte rum. Wenn es nicht mehr will, wird es nun überbrückt. Trennung macht dann halt der B2B Komverter
August 31, 2025 at 12:10 PM
So still
August 31, 2025 at 6:27 AM
August 29, 2025 at 6:00 AM
Kühl heue Morgen
August 29, 2025 at 5:14 AM