Skip to main content

Security

See All Stories

TikTok national security briefings “deeply troubling” and should be made public ā€“ senators

TikTok national security briefings | Spy camera and Top Secret folder

Two senators who have received classified TikTok national security briefings say that the information revealed to them has left them “deeply troubled.”

They are calling for the information to be declassified, as they say it is “critically important” that the American people can consider the issues for themselves ā€“ especially if they currently use the Chinese-owned app …

Expand Expanding Close

Security Bite: Hereā€™sĀ why Apple is being vague with iOS 17.4.1 details

Apple iOS 17.4.1 security fixes

Update: Apple released details on the security patches for iOS 17.4.1, iPadOS 17.4.1, visionOS 1.1.1, as well as macOS 14.4.1. They all patch an integer overflow vulnerability in two separate frameworks. Apple didn’t say whether it was being actively exploited. More details can be found here.

Last week, Apple released iOS 17.4.1 with rather vague release notes claiming to include important bug fixes and security patches. Two days later, the company has yet to add any specifics. This is unusual for Apple, which typically lists critical security patches hours after a release and suggests that the ones in iOS 17.4.1 could be significant or something else entirely…

Expand Expanding Close

Unpatchable security flaw in Apple Silicon Macs breaks encryption

Unpatchable security flaw in Apple Silicon Macs | MacBook with chaotic colorful wallpaper

University researchers have found an unpatchable security flaw in Apple Silicon Macs, which would allow an attacker to break encryption and get access to cryptographic keys.

The flaw is present in M1, M2, and M3 chips, and because the failing is part of the architecture of the chips, there’s no way for Apple to fix it in current devices …

Expand Expanding Close

Security Bite: Hackers breach CISA, forcing the agency to take some systems offline

CISA - US Cybersecurity Agency

CISA says two systems were hacked in February through vulnerabilities in Ivanti products. In response, the agency had to shut down both systems, which reportedly had critical ties to U.S. infrastructure.


9to5Mac Security Bite is exclusively brought to you by Mosyle, the only Apple Unified Platform. Making Apple devices work-ready and enterprise-safe is all we do. Our unique integrated approach to management and security combines state-of-the-art Apple-specific security solutions for fully automated Hardening & Compliance, Next Generation EDR, AI-powered Zero Trust, and exclusive Privilege Management with the most powerful and modern Apple MDM on the market. The result is a totally automated Apple Unified Platform currently trusted by over 45,000 organizations to make millions of Apple devices work-ready with no effort and at an affordable cost. Request your EXTENDED TRIAL today and understand why Mosyle is everything you need to work with Apple.


Expand Expanding Close

Global meta outage: What do we know, and what was the likely cause?

Global meta outage cause | Plug removed from socket

Yesterday’s global meta outage seemingly took out the company’s entire network, with users unable to access Facebook, Messenger, Instagram, Threads, and Quest headsets.

The outage lasted between one and two hours for most users, and while everything now appears back to normal, questions are naturally being asked about what went wrong …

Expand Expanding Close

iOS 17.4 includes 4 important security fixes, 2 were exploited [U]

Regain clarity with CleanMyPhone by MacPaw ā€” the new AI-powered cleaning app that quickly identifies and removes blurred images, screenshots, and other clutter from your device. Download it now with a free trial.


iOS 17.4 is here for all users and comes with lots of changes including new emoji, a CarPlay update, EU App Store changes, quantum security for iMessage, and more. However, there are also important security fixes with the release. Here are all the details.

Expand Expanding Close

Apple on EU iOS changes: Has done its best but DMA makes users less safe

App Store security

Apple is set to release iOS 17.4 to the public next week with a major update for EU users that allows third-party app stores and more. Now ahead of the Digital Markets Act going into effect, Apple has shared the most up-to-date and comprehensive resource about all the changes and its approach and “efforts to protect user security and privacy in the European Union.”

Expand Expanding Close

iPhone spyware company NSO suffers major defeat in US court, in Meta lawsuit

iPhone spyware company NSO must reveal code | Code on monitor viewed through glasses

The Android and iPhone spyware company NSO has suffered a major defeat in a US court, after a judge ruled that the company must hand over its Pegasus code to Meta.

It’s the latest setback for the company, which has been blacklisted in the US, sued by Apple, seen victims alerted by the iPhone maker, and faced severe financial problems

Expand Expanding Close

PSA: Don’t trust Amazon’s Choice video doorbells ā€“ some allow anyone to spy on you

Consumer Reports found that some Amazon’s Choice video bells have security so bad that a complete stranger can pair their phone to your doorbell simply by holding the exterior button for eight seconds.

Bad actors can even access still images from thousands of miles away, without needing any credentials for your account, creating a privacy nightmare …

Expand Expanding Close

Security Bite: Jamf warns cyber hygiene among many Apple-using businesses is ‘abysmal’

Hey, Arin here. Last week was the busiest for security so far this year. We saw an unprecedented offensive on the LockBit ransomware gang; Apple moved to make iMessage future-proof with quantum computer protection, and the topic of this week, Jamf’s new report highlighting some alarming statistics around Apple-using businesses. So, grab your drink of choice. Let’s get into it…


9to5Mac Security Bite is exclusively brought to you by Mosyle, the only Apple Unified Platform. Making Apple devices work-ready and enterprise-safe is all we do. Our unique integrated approach to management and security combines state-of-the-art Apple-specific security solutions for fully automated Hardening & Compliance, Next Generation EDR, AI-powered Zero Trust, and exclusive Privilege Management with the most powerful and modern Apple MDM on the market. The result is a totally automated Apple Unified Platform currently trusted by over 45,000 organizations to make millions of Apple devices work-ready with no effort and at an affordable cost. Request your EXTENDED TRIAL today and understand why Mosyle is everything you need to work with Apple.


Expand Expanding Close

AT&T says outage was caused by software update, not cyber attack ā€“ but DHS and FBI investigating

AT&T outage DHS and FBI investigating | DHS logo over mesh image

AT&T says that the widespread outage which started in the early hours of yesterday morning and later resolved was caused by a software update.

There had earlier been speculation that it might have been the result of a cyber attack, but while there are said to be “no indications of malicious activity” so far, both the Department of Homeland Security and the FBI are investigating …

Expand Expanding Close

Apple launching quantum computer protection for iMessage with iOS 17.4, here’s what that means

iMessage quantum computer protection iOS 17.4

Security is a never-ending mission and today Apple has announced its latest innovation for protecting iMessage. Already live in the iOS 17.4 beta is an innovative post-quantum cryptographic protocol called PQ3. The novel upgrade gives iMessage “the strongest security properties of any at-scale messaging protocol in the world.” Here’s why iMessage quantum security is important now and into the future, how PQ3 works, and more.

Expand Expanding Close

Wyze camera breach let 13,000 customers view other people’s homes

Wyze camera breach | Two cameras shown

A Wyze camera breach allowed some 13,000 customers view footage from other people’s homes. The company had originally said that the serious privacy and security breach had only happened for 14 people.

Wyze says that most of these customers only saw a thumbnail, but that more than 1,500 users saw either a full-size still or a video recording of an event …

Expand Expanding Close

Security Bite: Ransomware payments hit record $1.1 billion in 2023 despite previous yearā€™s decline

Vulnerability in iTunes and iCloud allowed ransomware on Windows PCs

It was a landmark year for ransomware in 2023 and a well-publicized one following the MOVEit and MGM Resorts beaches that shook the security industry. Not only did threat actors collectively pocket a record-breaking $1.1 billion from victims, but a new report highlights how the scope and complexity of these attacks are becoming increasingly concerning.


9to5Mac Security Bite is exclusively brought to you by Mosyle,Ā the only Apple Unified Platform. Making Apple devices work-ready and enterprise-safe is all we do. Our unique integrated approach to management and security combines state-of-the-art Apple-specific security solutions for fully automated Hardening & Compliance, Next Generation EDR, AI-powered Zero Trust, and exclusive Privilege Management with the most powerful and modern Apple MDM on the market.Ā The result is a totally automated Apple Unified Platform currently trusted by over 45,000 organizations to make millions of Apple devices work-ready with no effort and at an affordable cost.Ā Request your EXTENDED TRIALĀ today and understand why Mosyle is everything you need to work with Apple.


Expand Expanding Close

Proton launches open-source, end-to-end encrypted password manager for business

Proton Pass for Business

Proton launched its secure password manager last year to the public and now it’s available for enterprise. The company calls Proton Pass For Business “a Swiss vault for your team’s passwords.” It’s open source just like the consumer version of Proton Pass and offers end-to-end encryption, easy import from any other software, anti-phishing protection, admin tools, and more.

Expand Expanding Close

Security Bite: Use these iPhone privacy and security features in iOS 17.3, more

iOS 17 iPhone security and privacy features

Last week on Security Bite, I discussed a vulnerability in Stolen Device Protection, a newly added security feature in iOS 17.3. Vision Pro has since hit the market and has been dominating the headlines. This Sunday, I wanted to give your feed fresh air and discuss some of my favorite security and privacy features as of iOS 17.3. Admittedly, this will also give me more time to poke around at Vision Pro’s privacy and security protections in the real world.


9to5Mac Security Bite is exclusively brought to you by Mosyle, the only Apple Unified Platform. Making Apple devices work-ready and enterprise-safe is all we do. Our unique integrated approach to management and security combines state-of-the-art Apple-specific security solutions for fully automated Hardening & Compliance, Next Generation EDR, AI-powered Zero Trust, and exclusive Privilege Management with the most powerful and modern Apple MDM on the market. The result is a totally automated Apple Unified Platform currently trusted by over 45,000 organizations to make millions of Apple devices work-ready with no effort and at an affordable cost. Request your EXTENDED TRIAL today and understand why Mosyle is everything you need to work with Apple.


Expand Expanding Close

Manage push notifications

notification icon
We would like to show you notifications for the latest news and updates.
notification icon
You are subscribed to notifications
notification icon
We would like to show you notifications for the latest news and updates.
notification icon
You are subscribed to notifications