Red Hot Cyber
Cybersecurity is about sharing. Recognize the risk, combat it, share your experiences, and encourage others to do better than you.
Cybersecurity is about sharing. Recognize the risk,
combat it, share your experiences, and encourage others
to do better than you.
TM RedHotCyber 320x100 042514
Crowdstriker 970×120
Spyware under fire! Apple releases a critical patch for a 0day used on iOS and iPadOS

Spyware under fire! Apple releases a critical patch for a 0day used on iOS and iPadOS

21 August 2025 08:50

Apple has released an urgent security patch for iOS and iPadOS to address a critical zero-day vulnerability. This vulnerability, identified as CVE-2025-43300, has been confirmed to be actively exploited in highly targeted attacks.

The urgent patches, released as iOS 18.6.2 and iPadOS 18.6.2, address a memory corruption vulnerability that could be triggered by processing a specially crafted image file.

The primary issue is an out-of-bounds write within the ImageIO framework, a critical component of how Apple operating systems handle and play various image formats.

According to Apple’s security advisory, the company is “aware of a report that this issue could have been exploited in a highly sophisticated attack targeting specific individuals.”

By sending a malicious image, an attacker could write data outside the intended memory buffer. This type of memory corruption flaw is a classic vector for arbitrary code execution, potentially allowing an attacker to take full control of an affected device.

This attack pattern is similar to previous zero-click exploits used to implement surveillance tools like Pegasus, in which victims are compromised simply by receiving a file via a messaging app, without any user interaction.

Apple’s released patches cover:

  • iPhone XS and later
  • iPad Pro (13-inch, 12.9-inch third generation and later, 11-inch first generation and later)
  • 3rd generation iPad Air and later
  • 7th generation iPad and later
  • 5th generation iPad mini and later

Active exploitation of CVE-2025-43300 transforms it from a theoretical risk to a clear and present danger for users of unpatched devices.

Follow us on Google News to receive daily updates on cybersecurity. Contact us if you would like to report news, insights or content for publication.

Cropped RHC 3d Transp2 1766828557 300x300
The editorial staff of Red Hot Cyber is composed of IT and cybersecurity professionals, supported by a network of qualified sources who also operate confidentially. The team works daily to analyze, verify, and publish news, insights, and reports on cybersecurity, technology, and digital threats, with a particular focus on the accuracy of information and the protection of sources. The information published is derived from direct research, field experience, and exclusive contributions from national and international operational contexts.