Article 6EJMK iOS 16.6.1 fixes a big iPhone security vulnerability used to install Pegasus spyware

iOS 16.6.1 fixes a big iPhone security vulnerability used to install Pegasus spyware

by
Tom Warren
from The Verge - All Posts on (#6EJMK)
akrales_190914_3628_0121.0.jpg Photo by Amelia Holowaty Krales / The Verge

Apple has issued a critical security update for iPhones to address a zero-day bug in iOS 16 that could allow attackers to remotely install spyware on a device without any interaction from the iPhone owner. Citizen Lab, a spyware research group, discovered the exploit last week and immediately notified Apple.

The zero-click zero-day exploit had been used to install NGO Group's Pegasus spyware onto an iPhone owned by an employee of a Washington DC-based civil society organization. Pegasus is spyware developed by a private contractor for use by government agencies. The spyware infects a phone and sends back data, including photos, messages, and audio / video recordings.

The exploit involves PassKit attachments sent via iMessage

Apple has...

Continue reading...

External Content
Source RSS or Atom Feed
Feed Location http://www.theverge.com/rss/index.xml
Feed Title The Verge - All Posts
Feed Link https://www.theverge.com/
Reply 0 comments