A newly disclosed iPhone vulnerability gives hackers yet another reason to love email.
According to the San Francisco-based security firm ZecOps,eroticized woman bad actors have discovered a way to attack iOS devices via their default email app. And here's the real kick to the guts: In some cases, you don't even have to be tricked into opening the email. The damage is done simply by your phone downloading the malicious email in the background.
ZecOps published details of the vulnerability on Monday, claiming it has seen the attack "widely exploited in the wild." In other words, ZecOps is saying this isn't just some theoretical bug. Rather, people have actually used it in targeted attacks. The vulnerability affects, to some degree, every version of Apple's operating system from iOS 6 and up.
"The vulnerability allows remote code execution capabilities and enables an attacker to remotely infect a device by sending emails that consume significant amount of memory," explains ZecOps. "The vulnerability can be triggered before the entire email is downloaded, hence the email content won’t necessarily remain on the device."
Phones running iOS 13 are particularly vulnerable, as they reportedly don't even need to open the email for it to do its work. If you're running iOS 12, you're a tad bit better off — you have to click the email first, but your phone is ultimately still at risk if you do so.
We reached out to Apple to both confirm ZecOps report and to determine when, if ever, it plans to issue a patch. Apple confirmed that a vulnerability in Mail is patched in the iOS 13.4.5 beta, which is out now, and will be included in an upcoming software update.
At present, assuming you're not running a beta version of iOS, ZecOps says there is no way to prevent this attack other than to disable the default iOS mail app.
So, should you actually be worried about this? Well, that depends. Are you someone with valuable information that a nation-state might want a piece of? If so, then possibly.
Victims of this attack, claims ZecOps, include "individuals from a Fortune 500 organization in North America," "an executive from a carrier in Japan," "a VIP from Germany," "[managed security service providers] from Saudi Arabia and Israel," and "a Journalist in Europe."
SEE ALSO: As coronavirus spreads, yet another company brags about tracking you
In other words, your average Joe doesn't need to stress about this too much.
Still, it's worth keeping in mind that no operating system is completely hack-proof. And yes, that even includes Apple's. Oh yeah, and it also serves as a stark reminder that you should always make sure your phone is running the latest version of iOS — whether you're an average Joe or not.
Topics Apple Cybersecurity iOS iPhone
The White House's social media 'bias' survey has a terrible privacy policyBabies crying in slow motion makes for an hilarious, nightmarish trend19 people share the niche things that turn them onApple TV app redesign launches ahead of TV+ streaming servicePeople think this video of a New Yorker smashing a windshield is fakeWill 'Game of Thrones' off Cersei on Mother's Day? Some fans seem to think so.Teen decorates grad cap with QR code that honors those killed in school shootingsWhat Apple's Supreme Court case means for the future of the App StoreBill Nye uses profanity to stress the enormity of climate changeThe White House's social media 'bias' survey has a terrible privacy policyCrypto exchange Binance says trading will resume tomorrowBanks set to lose their last stand against Apple PayLyft will give you an exact price now, not just an estimateJeremy Clarkson launches social media platform for car addicts'Rage 2' review: A thrilling, tightly paced Mad MaxWhat to buy for the person in your life whose only interest is Kylie Jenner's lipsFacebook rolls out 'one strike' policy for liveBoosted Rev is a powerful eCelebrity's book 'misunderstanding' becomes Twitter memeWhatsApp exploit allowed spyware to be installed via voice call CoinMarketCap gets iOS app, Watchlist feature Facebook brags that Messenger has 300,000 business bots Brooklyn Beckham surprised his dad on his birthday and the reaction is just so pure Oh my God, Swedish meatballs apparently aren't Swedish at all The first severe weather outbreak of 2018 begins Tuesday Facebook announces new dating service 'for serious relationships, not hookups' Twitter can't stop comparing Thanos to various things that are not Thanos How to unlock Thanos' 'Avengers: Infinity War' gauntlet in 'God of War' Whoops! F8 website crashes as Facebook’s biggest event of the year starts The best movies coming to your flights in May The best stuff Facebook, Instagram, WhatsApp, Oculus announced at F8 MoviePass brings back temporarily absent one Memorial bench has a nice message, but definitely needed a better editor Facebook's making realistic VR avatars that look just like you IRL No, Tesla's autopilot doesn't mean you can sit in the passenger seat Australia pledges half a billion dollars toward the Great Barrier Reef Goalkeeper with Homer Simpson meme shirt has won all of soccer forever Miley Cyrus takes back apology she made 10 years ago for topless photo Students evacuated over 'smell of gas,' culprit found to be durian People are loving that deep fried kebabs sign in 'Avengers: Infinity War'
2.4454s , 10195.7890625 kb
Copyright © 2025 Powered by 【eroticized woman】,Wisdom Convergence Information Network