Apple rolls out iOS 16.6.1 security update to fix Pegasus exploit

Main Image
  • Like
  • Comment
  • Share

If your iPhone is notified of an incoming iOS 16.6.1, it’s high time that you get the update ASAP. Turns out Apple acknowledged a critical security issue with its iOS update after Citizen Lab, a spyware research group, notified the tech giant of an exploit that could allow NSO Group’s Pegasus spyware to infiltrate. Fortunately, it took Apple just a week to plug the exploit and release a critical iOS 16.6.1 security update patching it.

According to the reports, if attackers get hold of the exploit, they can easily infect the device with Israel-based NSO Group’s Pegasus software. For the unversed, Pegasus is a surveillance spyware made by a private organization for government agencies. It lets the governments track certain persons of interest such as activists and journalists among others.

Perhaps, the primary agenda of this spyware is to record and send back data containing text messages, calls, location, and more that is relayed to the one who infected the devices in the first place.

According to the excerpts put up by Citizen Lab which discovered the exploit and alerted Apple, the exploit uses PassKit (a framework that Apple uses for Wallet and Apple Pay) and Apple SDK. The infiltrators would send out malicious images via iMessage to trigger the exploit on the infected device and that’s all without any input or alert to the iPhone owners. It has been summoned as a zero-day and zero-click exploit dubbed ‘Blastpass’.

With the onset of iOS 16.6.1 that is being fed to all the eligible iPhones across the globe, users should be able to steer clear of the exploit. Citizen Lab suggests that the exploit could have far-reaching effects if left unchecked. For now, iOS Lockdown mode can help protect the devices from such exploits albeit at the cost of restricted functionality until you get iOS 16.6.1 security update on your device.

You can follow Smartprix on TwitterFacebookInstagram, and Google News. Visit smartprix.com for the most recent newsreviews, and tech guides

Related Articles

ImageApple announces a huge price cut for iPad 10th Generation: Should one buy the device?

Apple held its first-ever launch event of 2024 on 7th May wherein the brand refreshed the iPad lineup and also introduced new accessories for iPads. The ‘Let Loose event’ saw two new models of iPad Pro, two new models of iPad Air, Magic Keyboard, and Apple Pencil Pro being announced. Alongside all these new launches, …

ImageReign Spyware: This Pegasus-Like Spyware Targets iPhones Using Zero-Click Exploit

The Citizen Lab at the Munk College of the University of Toronto has uncovered another dangerous spyware tool that has been sold to governments around the world. Reign, developed by Israeli company QuaDream, shares destructive capabilities similar to Pegasus, which was infamous for its use in spying on political adversaries, activists, and journalists. Reign is …

ImageApple to introduce ‘lockdown mode’ to thwart extreme cyberattacks like Pegasus

Summary: Apple will soon introduce a new feature called “Lockdown Mode” to prevent cyberattacks such as NSO Group’s Pegasus on Apple devices. Apple recorded instances of cyberattacks using spyware to do surveillance on users across 150 countries and thus, decided to up its game against such practices with the lockdown mode that prevents such attempts …

ImageiOS 17.3.1 rolls out with a minor bug fix Apple singled out earlier

iOS 17.3.1 is here as a minor update over iOS 17.3 released more than two weeks ago. The update doesn’t carry much except the bug that caused text to duplicate or overlap when the user would type. iOS 17.3.1 comes as a minor update weighing 298.2MB (at least on the iPhone 15 Pro Max). The …

ImageWindows Security Update Causes VPN Connection Issues; Here’s the Fix

Microsoft recently acknowledged that Windows devices may encounter VPN connection failures after installing the April 2024 security update (KB5036893) or the April 2024 non-security preview update. This issue affects all personal and enterprise Windows 11, Windows 10, Windows Server 2008, and later versions. The security update was intended to enhance system security and address potential …

Discuss

Be the first to leave a comment.