Tech World

Tech World

Share

12/07/2025

06/05/2025

๐—ช๐—ผ๐—ฟ๐—บ๐—ฎ๐—ฏ๐—น๐—ฒ ๐—ญ๐—ฒ๐—ฟ๐—ผ-๐—–๐—น๐—ถ๐—ฐ๐—ธ ๐—ฅ๐—–๐—˜ ๐˜ƒ๐—ถ๐—ฎ ๐—”๐—ฝ๐—ฝ๐—น๐—ฒ ๐—”๐—ถ๐—ฟ๐—ฃ๐—น๐—ฎ๐˜†

Critical AirPlay flaws (dubbed AirBorne) allow attackers to hijack Apple devices โ€” no click needed.

๐—œ๐—ณ ๐˜†๐—ผ๐˜‚'๐—ฟ๐—ฒ ๐—ผ๐—ป ๐˜๐—ต๐—ฒ ๐˜€๐—ฎ๐—บ๐—ฒ ๐—ช๐—ถ-๐—™๐—ถ, ๐˜†๐—ผ๐˜‚'๐—ฟ๐—ฒ ๐—ฎ ๐˜๐—ฎ๐—ฟ๐—ด๐—ฒ๐˜.

๐—ช๐—ต๐—ฎ๐˜โ€™๐˜€ ๐—ด๐—ผ๐—ถ๐—ป๐—ด ๐—ผ๐—ป?
CVE-2025-24252 + CVE-2025-24132 can be chained for remote code ex*****on (RCE) across Macs, iPhones, TVs, and AirPlay-enabled speakers.
No interaction. No warning. Just being connected is enough.

๐—ช๐—ต๐˜† ๐—ถ๐˜ ๐—บ๐—ฎ๐˜๐˜๐—ฒ๐—ฟ๐˜€ :
โ€ข Zero-click RCE
โ€ข Wormable (spreads inside networks)
โ€ข File access + info disclosure
โ€ข MITM + ACL bypass
โ€ข Complete device takeover

๐Ÿ›ก๏ธ ๐—ช๐—ต๐—ฎ๐˜ ๐˜๐—ผ ๐—ฑ๐—ผ :
โ€ข Update affected devices ASAP
โ†’ iOS 18.4
โ†’ macOS Sequoia 15.4
โ†’ macOS Ventura 13.7.5
โ†’ tvOS 18.4
โ†’ Any device using AirPlay SDK

โš ๏ธ If AirPlay is set to โ€œEveryoneโ€ or โ€œSame network,โ€ youโ€™re wide open.
Turn it off or limit it โ€” now.
-

Culinary Team

Attire

Telephone

Website