A significant security vulnerability, identified as CVE-2025-24203 and nicknamed "dirtyZero" or "mdc0," has recently been discovered in Apple's kernel. This flaw, brought to light by Ian Beer of Google Project Zero, impacts a wide range of iOS and iPadOS versions, specifically 16.0 through 16.7.10, 17.0 through 17.7.5, and 18.0 through 18.3.2. The exploit leverages a less scrutinized aspect of Apple's virtual memory management, VM_BEHAVIOR_ZERO_WIRED_PAGES, to enable unauthorized modification of protected file system areas. This allows non-privileged applications to bypass standard security restrictions, including those related to root access and read-only memory, by zeroing out memory pages containing critical system files. This capability, reminiscent of prior exploits like MacDirtyCow, opens the door for both beneficial and malicious activities. While it empowers users to create tools for interface customization and system adjustments, it also presents a significant risk. Attackers could exploit this vulnerability for persistent tampering, privilege escalation, and covert surveillance. Apple has addressed these security concerns by releasing updates in iPadOS and iOS versions 17.7.6 and 18.4, as well as subsequent releases. Security experts advise end users and administrators to update their devices promptly. Furthermore, organizations and developers should re-evaluate their mobile device policies, restrict third-party app installations, enhance app review processes, and educate users about the risks associated with running outdated firmware.
ESET researchers have uncovered two sophisticated Android spyware campaigns that impersonate Signal and ToTok messaging apps to target users seeking secure communication platforms....
A new malware campaign dubbed SORVEPOTEL is rapidly spreading through WhatsApp messages, primarily targeting Windows systems in Brazil. Instead of focusing on data theft or ransomw...
On 15 October 2023, threat actor GhostSocks advertised a new Malware-as-a-Service (MaaS) on the Russia-based cybercrime forum xss[.]is. The service converts infected Windows PCs in...