[HN Gopher] Apple releases emergency update to fix zero-day expl...
___________________________________________________________________
Apple releases emergency update to fix zero-day exploited in
attacks
Author : arkadiyt
Score : 26 points
Date : 2023-07-10 19:50 UTC (3 hours ago)
(HTM) web link (www.bleepingcomputer.com)
(TXT) w3m dump (www.bleepingcomputer.com)
| ratg13 wrote:
| I've always been curious to know .. with all of the random 0-days
| in mobile operating systems (iOS, for example)
|
| How do you know that an attacker is not persisting in the system
| if you click a bad link before a patch gets applied?
| dmitrygr wrote:
| Persisting in the fs is much harder than just getting code
| execution. Not impossible (nothing is) but much harder (and
| thus likely less common), due to signature checking
| wannacboatmovie wrote:
| What about older OSes? Are they not vulnerable or simply ignored?
| treesknees wrote:
| Apple only releases Rapid Security Response updates for the
| latest versions of its operating systems [1]. So any devices
| running iOS 16.4.X or MacOS 13.3.X won't see one, and anything
| before that didn't support Rapid Security Response updates.
| Unfortunately there's not enough information available to know
| if older releases are vulnerable.
|
| [1] https://support.apple.com/en-us/HT201224
| vaxman wrote:
| > Unfortunately there's not enough information available to
| know if older releases are vulnerable.
|
| Assume YES.
| vaxman wrote:
| Hell, what about newer OSes ...like iOS 17 Beta? visionOS 1
| Beta?
___________________________________________________________________
(page generated 2023-07-10 23:02 UTC)