Apple has issued a bundle update for bugs 'actively exploited' by cyber-criminals successful targeting Intel-based Mac systems.
In a information advisory, the tech elephantine said it was alert of 2 vulnerabilities that “may person been actively exploited connected Intel-based Mac systems.”
These bugs are considered “zero day” vulnerabilities. To hole those, Apple released a bundle update for macOS (called macOS Sequoia 15.1.1), arsenic good arsenic fixes for iPhones and iPads, including users moving the older iOS 17 software.
“Processing maliciously crafted web contented whitethorn pb to arbitrary codification execution. Apple is alert of a study that this contented whitethorn person been actively exploited connected Intel-based Mac systems,” said the company.
The contented was addressed with improved checks, it added. It's not yet known who is down the attacks targeting Mac users, oregon however galore Mac users person been targeted.
The vulnerabilities were reported by information researchers astatine Google's Threat Analysis Group.
These vulnerabilities subordinate to WebKit and JavaScriptCore, the web engines that powerfulness the Safari browser and for moving web content.
Apple users should update their iPhones, iPads, and Macs arsenic soon arsenic possible.
In July, the tech elephantine Apple issued a caller informing to iPhone users successful astatine slightest 98 countries, including successful India, astir a imaginable caller mercenary spyware onslaught similar 'Pegasus'.
According to the Apple warning, it detected that “you are being targeted by a mercenary spyware onslaught that is trying to remotely compromise the iPhone associated with your Apple ID”.
In the warning, the iPhone shaper further said that this onslaught is “likely targeting you specifically due to the fact that of who you are oregon what you do”.
In April this year, the tech elephantine sent menace notifications to prime users successful 92 countries, including immoderate successful India, who whitethorn person been targeted utilizing 'mercenary spyware' similar Pegasus from the NSO Group.