Apple Releases Critical Security Update Following Reports of Vulnerabilities
The latest update from the tech giant tackles significant security vulnerabilities in iPhones and iPads, in response to alerts about advanced attacks.
Apple Inc. has released an urgent advisory urging millions of users to update their iPhones and iPads after identifying serious security vulnerabilities.
This announcement was made on February 10, 2024, in response to significant threats found within the devices' software.
The update was prompted by research from Bill Marczak at The Citizen Lab, part of the University of Toronto's Munk School, who pointed out that these vulnerabilities could be exploited in highly advanced attacks aimed at specific individuals.
In a statement, Apple noted, "We are aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals." The company does not disclose security issue details publicly until comprehensive investigations have concluded.
As reported by several sources, including _Forbes_, the iOS 18.3.1 update fixes a serious flaw in the Accessibility features that could potentially disable the USB Restricted Mode on locked devices during a physical attack.
This Restricted Mode, first introduced in iOS 11.4.1, is intended to safeguard against unauthorized data access via USB when a device is locked.
There are concerns about hacker tools such as Grayshift's GreyKey, which is reportedly even managed by contractors associated with U.S. intelligence agencies and a former Apple security engineer.
The latest update can be installed on the following devices:
- iPhone XS and newer
- iPad Pro (13-inch and newer)
- iPad Pro (12.9-inch 3rd generation and newer)
- iPad Pro (11-inch 1st generation and newer)
- iPad Air (3rd generation and newer)
- iPad (7th generation and newer)
- iPad Mini (5th generation and newer)
In related developments, the Federal Bureau of Investigation (FBI) has recently issued a caution regarding a scam that targets both iPhone and Android users.
This scam reportedly involves fraudulent text messages that appear to be from toll agencies, demanding immediate payment for alleged unpaid tolls.
Victims receive messages instructing them to click on payment links, which lead to fake websites created to capture sensitive banking information.
The FBI has indicated that this scam may be spreading across different areas, urging users to remain cautious to prevent potential financial loss.