Tech World
12/07/2025
๐ช๐ผ๐ฟ๐บ๐ฎ๐ฏ๐น๐ฒ ๐ญ๐ฒ๐ฟ๐ผ-๐๐น๐ถ๐ฐ๐ธ ๐ฅ๐๐ ๐๐ถ๐ฎ ๐๐ฝ๐ฝ๐น๐ฒ ๐๐ถ๐ฟ๐ฃ๐น๐ฎ๐
Critical AirPlay flaws (dubbed AirBorne) allow attackers to hijack Apple devices โ no click needed.
๐๐ณ ๐๐ผ๐'๐ฟ๐ฒ ๐ผ๐ป ๐๐ต๐ฒ ๐๐ฎ๐บ๐ฒ ๐ช๐ถ-๐๐ถ, ๐๐ผ๐'๐ฟ๐ฒ ๐ฎ ๐๐ฎ๐ฟ๐ด๐ฒ๐.
๐ช๐ต๐ฎ๐โ๐ ๐ด๐ผ๐ถ๐ป๐ด ๐ผ๐ป?
CVE-2025-24252 + CVE-2025-24132 can be chained for remote code ex*****on (RCE) across Macs, iPhones, TVs, and AirPlay-enabled speakers.
No interaction. No warning. Just being connected is enough.
๐ช๐ต๐ ๐ถ๐ ๐บ๐ฎ๐๐๐ฒ๐ฟ๐ :
โข Zero-click RCE
โข Wormable (spreads inside networks)
โข File access + info disclosure
โข MITM + ACL bypass
โข Complete device takeover
๐ก๏ธ ๐ช๐ต๐ฎ๐ ๐๐ผ ๐ฑ๐ผ :
โข Update affected devices ASAP
โ iOS 18.4
โ macOS Sequoia 15.4
โ macOS Ventura 13.7.5
โ tvOS 18.4
โ Any device using AirPlay SDK
โ ๏ธ If AirPlay is set to โEveryoneโ or โSame network,โ youโre wide open.
Turn it off or limit it โ now.
-