Sponsored message
Logged in as
Audience-funded nonprofit news
radio tower icon laist logo
Next Up:
0:00
0:00
Subscribe
  • Listen Now Playing Listen
NPR News

Apple warns of security flaws in iPhones, iPads and Macs

People shop at an Apple Store in Beijing on Sept. 28, 2021. Apple has disclosed serious security vulnerabilities for iPhones, iPads and Macs that  could potentially allow attackers to take complete control of these devices.
People shop at an Apple Store in Beijing on Sept. 28, 2021. Apple has disclosed serious security vulnerabilities for iPhones, iPads and Macs that could potentially allow attackers to take complete control of these devices.
(
Andy Wong
/
AP
)

One year ago, Congress defunded public media. Now that we're 100% community funded, please become a sustaining member or increase your existing membership today.

SAN FRANCISCO — Apple disclosed serious security vulnerabilities for iPhones, iPads and Macs that could potentially allow attackers to take complete control of these devices.

Apple released two security reports about the issue on Wednesday, although they didn't receive wide attention outside of tech publications.

Apple's explanation of the vulnerability means a hacker could get "full admin access" to the device. That would allow intruders to impersonate the device's owner and subsequently run any software in their name, said Rachel Tobac, CEO of SocialProof Security.

Security experts have advised users to update affected devices — the iPhone6S and later models; several models of the iPad, including the 5th generation and later, all iPad Pro models and the iPad Air 2; and Mac computers running MacOS Monterey. The flaw also affects some iPod models.

Apple did not say in the reports how, where or by whom the vulnerabilities were discovered. In all cases, it cited an anonymous researcher.

Commercial spyware companies such as Israel's NSO Group are known for identifying and taking advantage of such flaws, exploiting them in malware that surreptitiously infects targets' smartphones, siphons their contents and surveils the targets in real time.

NSO Group has been blacklisted by the U.S. Commerce Department. Its spyware is known to have been used in Europe, the Middle East, Africa and Latin America against journalists, dissidents and human rights activists.

Sponsored message

Security researcher Will Strafach said he had seen no technical analysis of the vulnerabilities that Apple has just patched. The company has previously acknowledged similarly serious flaws and, in what Strafach estimated to be perhaps a dozen occasions, has noted that it was aware of reports that such security holes had been exploited.

Copyright 2022 NPR. To see more, visit https://www.npr.org.

One year ago, Congress voted to defund public media, eliminating a critical $1.7 million from our budget every year going forward. But they couldn’t silence us, and we’re not going anywhere. LAist is now 100% community funded and that means we’re taking our future into our own hands and turning to you to keep local reporting strong.

You come to LAist because you want independent reporting and trustworthy local information. Our nonprofit newsroom doesn’t answer to shareholders looking to turn a profit. Instead, we answer to you and our communities. We are free to follow facts wherever they lead and to hold power to account without fear or favor. Our only loyalty is to our readers and listeners and our mission: to inform, engage, and strengthen Southern California’s communities.

If this story helped you, please become a monthly member today to help sustain this mission. It just takes 1 minute to donate below.
Senior Vice President News, Editor in Chief

Make your tax-deductible donation today