Apple security updates: iOS 14.7 fixes WiFiDemon flaw

Apple has released security updates for macOS Big Sur (11.5), Catalina (10.15) and Mojave (10.14), as well as iOS (14.7) and iPadOS (14.7). There is no indication that Apple has fixed any vulnerabilities that may be exploited to deliver NSO Group&#8217… Continue reading Apple security updates: iOS 14.7 fixes WiFiDemon flaw

Zimperium enhances its offering with ZecOps’ advanced mobile forensics capabilities

Zimperium, the global leader in mobile security, announced a strategic partnership with ZecOps, the leading agentless automated Digital Forensics and Incident Response (DFIR) provider, enhancing Zimperium’s offering with ZecOps’ advanced mobile forensi… Continue reading Zimperium enhances its offering with ZecOps’ advanced mobile forensics capabilities

Hackers have been exploiting two zero-days to break into iPhones and iPads

A zero-day vulnerability in Apple’s Mail application for iOS has been used to target high-profile victims around the world for more than two years, according to ZecOps research published Wednesday. The flaw, which ZecOps uncovered through conducting a routine digital forensics and incident response investigation, is triggered by sending emails that consume a “significant amount” of a device’s memory. From there, hackers could gain access to email accounts via Mail, gaining the ability to leak, modify, or delete emails. If the attackers want to cause additional harm and gain further access to victim devices, it “would require an additional infoleak bug [and] a kernel bug afterwards,” the researchers write in a blog that details their findings. ZecOps assesses with “high confidence” that individuals at a U.S. company in the Fortune 500, managed security service providers from Saudi Arabia and Israel, an executive in Japan, a journalist in Europe, and a […]

The post Hackers have been exploiting two zero-days to break into iPhones and iPads appeared first on CyberScoop.

Continue reading Hackers have been exploiting two zero-days to break into iPhones and iPads