Breaking
May 1, 2025

Update Your Apple Devices Now to Keep Them Safe From New AirPlay Vulnerability Khamosh Pathak | usagoldmines.com

There’s a new Apple security issue in town, and this time it’s Airborne. Or, well, that’s what the security researchers are calling it. As cybersecurity firm Oligo revealed on Tuesday, a collection of security vulnerabilities are now affecting the AirPlay feature in Apple products, and the AirPlay SDK used in third-party gadgets like TVs, speakers, receivers, and more.

As reported by Wired, the vulnerability lets hackers take over the AirPlay protocol to inject malware into and take control of impacted devices. This is a zero-click attack, so it works even if you don’t click on anything.

AirPlay is a widely supported protocol, and a popular way for Apple devices to share audio and video. Thankfully, Oligo had alerted Apple about this issue, and has spent months in the background fixing the issues.

How Airborne’s hijacking works

The Airborne vulnerability works only on a local network, so the hijacker will have to be in proximity to you and on that same network. This local network can be anywhere, like your home, your workspace, or the Airport wifi network.

If a hacker is on your local network, and if your AirPlay devices are discoverable, they are susceptible to a zero-click attack. Meaning that the hijacker can take control of the device without any action from you. Alternatively, they could direct another type of attack at your device, like a Man-in-the-middle (MITM) attacks or a Denial of service (DoS) attack.

On a Mac, this could allow the hijacker to take control of and run malicious code on your computer.

On a connected device, like a Bluetooth speaker, it could also let the hijacker play anything they want, or turn on the microphone to listen in on conversations. The video below demonstrates the security researchers taking over a Bose speaker.

Time to update all your Apple devices

Apple has patched the Airborne vulnerability on all its latest software. That means it’s time to update your iPhone, iPad, Mac, Apple Watch, and Apple Vision Pro to the latest available software version. You can do so by going to Settings > General > Software Update on your iPhone or iPad, and System Settings > General > Software Update on the Mac.

What to do about third-party devices

While Oligo has worked closely with Apple to fix the vulnerability in its own devices, the issue still remains on devices that support the AirPlay protocol, like your TV or smart speaker, which will still exposed to this issue. These devices, of which there are tens of millions out in the wild, are the real issue, as the security researchers can’t work with every single company to fix the issue.

There’s not a lot you can do about third-party devices, but if you see an update from an AirPlay supported device in your home, make sure to install it.

How to protect yourself from AirPlay hijacking

Disabling AirPlay Recieving on Mac.

Credit: Khamosh Pathak

Yes, you’ve updated your official Apple devices, but depending on your device, that might not be enough, as mentioned above. While you can’t really expect to update the firmware on your speaker, there are a couple of things you can do to lessen the likelihood of an attack.

  1. First, make sure you’re updating all third-party devices that support AirPlay. That means your TV, or your smart audio system.

  2. Next, make sure that AirPlay is disabled when you’re not actively using it. How to do this will differ based on your device, but to do this on a Mac, go to System Settings > AirDrop & Handoff and disable AirPlay Receiver.

  3. Only use trusted devices to stream AirPlay content.

  4. Next, limit AirPlay streaming to only yourself. On a Mac, this is under Settings > General > AirDrop & Handoff. Navigate to this menu, then in the dropdown next to Allow AirPlay For, choose Current User.

  5. Most importantly, avoid playing content through AirPlay when you’re in a public network, or using any unknown network like those at airports, cafes, or hotels.

 

This articles is written by : Nermeen Nabil Khear Abdelmalak

All rights reserved to : USAGOLDMIES . www.usagoldmines.com

You can Enjoy surfing our website categories and read more content in many fields you may like .

Why USAGoldMines ?

USAGoldMines is a comprehensive website offering the latest in financial, crypto, and technical news. With specialized sections for each category, it provides readers with up-to-date market insights, investment trends, and technological advancements, making it a valuable resource for investors and enthusiasts in the fast-paced financial world.

Recent:

Sundar Pichai says DOJ demands are a “de facto” spin-off of Google search Ryan Whitwam | usagoldmine...

Research roundup: Tattooed tardigrades and splash-free urinals Jennifer Ouellette | usagoldmines.com

Epic Games Offers Apple 'Peace Proposal' to Return Fortnite to the App Store Worldwide Juli Clover |...

If you’re in the market for a $1,900 color E Ink monitor, one of them exists now Andrew Cunningham |...

Fortnite will return to iOS after court slams Apple’s “obvious cover-up” Kyle Orland | usagoldmines....

Epic Games Wins Major Victory as Apple is Ordered to Comply With App Store Anti-Steering Injunction ...

Apple Releases Safari Technology Preview 218 With Bug Fixes and Performance Improvements Juli Clover...

LG pulls the final software plug on its phones –here are its 7 best-ever models, ranked mark.wilson@...

DNA links modern pueblo dwellers to Chaco Canyon people John Timmer | usagoldmines.com

You Can Get a Lifetime License to Microsoft Project 2021 Professional for $20 Right Now Pradershika ...

Google Just Launched an AI-Powered Duolingo Alternative Jake Peterson | usagoldmines.com

Meta Now Collects More Data From Ray-Bans to Bolster AI Juli Clover | usagoldmines.com

Amazon's best TV just got some nice free upgrades jacob.krol@futurenet.com (Jacob Krol) | usagoldmin...

Best laptops: Our experts pick the top 12 models | usagoldmines.com

Best gaming monitors 2025: Level up your display | usagoldmines.com

Android 16 Teases Secret UI Update That Should Bring Fresh Beauty, Tons of Blur Kellen | usagoldmine...

Samsung Mentions New Foldables, Galaxy Watch With ‘Innovative Design’ During Earnings Call Tim | usa...

The Samsung M8 Is a Smart Monitor and TV in One, and It’s $300 Off Right Now Daniel Oropeza | usagol...

I Started Customizing My Steam Deck Controls, and It Was a Literal Game Changer Eric Ravenscraft | u...

Apple Warns More Users About Mercenary Spyware Attacks Juli Clover | usagoldmines.com

Google is working on a Gemini AI app for kids erichs211@gmail.com (Eric Hal Schwartz) | usagoldmines...

Windows RDP lets you log in using revoked passwords. Microsoft is OK with that. Dan Goodin | usagold...

Raspberry Pi cuts product returns by 50% by changing up its pin soldering Kevin Purdy | usagoldmines...

Windows RDP lets you log in using revoked passwords. Microsoft is OK with that. Dan Goodin | usagold...

You Can Get the Nix Mini 3 Color Sensor on Sale for Just $80 Right Now Pradershika Sharma | usagoldm...

Six Signs Your Bank Is About to Fail (and What to Do About It) Jeff Somers | usagoldmines.com

Here's What's New in the Latest Nintendo Switch Update Jake Peterson | usagoldmines.com

Google CEO Says Antitrust Remedies Would Cripple Google Search Juli Clover | usagoldmines.com

Samsung confirms 2025 release for its first Android XR device – here are 3 things I want to see from...

Data centers in China are dumping rare 48GB Nvidia RTX 4090D GPUs for nearly $6,000, but the exact r...

First Slate Auto and now Isuzu – why electric pick-up trucks could be the next big EV battleground ...

SK Telecom offers free SIM cards to customers after data breach | usagoldmines.com

YouTube just got a big TV app upgrade – here are 9 new time-saving improvements mark.wilson@futurene...

NASA just swapped a 10-year-old Artemis II engine with one nearly twice its age Stephen Clark | usag...

Millions of Apple Airplay-enabled devices can be hacked via Wi-Fi Lily Hay Newman and Andy Greenberg...

RFK Jr.’s anti-vaccine stance is rooted in a disbelief in germ theory Beth Mole | usagoldmines.com

Intel ‘Lunar Lake’ handhelds, laptops are getting a free gaming boost | usagoldmines.com

Android Users Can Now Edit Photos, Videos in Shared Albums Tim | usagoldmines.com

My Favorite Amazon Deal of the Day: The New M3 iPad Air Daniel Oropeza | usagoldmines.com

After convincing senators he supports Artemis, Isaacman nomination advances Eric Berger | usagoldmin...

Nintendo imposes new limits on sharing for digital Switch games Kyle Orland | usagoldmines.com

CBS owner ready to settle Trump lawsuit in apparent bid to get merger approved Jon Brodkin | usagold...

Get the latest Surface Laptop with Snapdragon for $599 | usagoldmines.com

Beyond Speedtest: Orb gives you a holistic look at Internet performance | usagoldmines.com

Wednesday Poll: You Can Bring Back an ‘Old Phone’ Feature, What’s It Gonna Be? Tim | usagoldmines.co...

Samsung Slaps $230 Off Galaxy S25 Ultra Without Trade-in Kellen | usagoldmines.com

The Best Running Shoes for Every Type of Runner Meredith Dietz | usagoldmines.com

Five Unexpected Ways Your Home Renovation Can Backfire Jeff Somers | usagoldmines.com

You Can Get a Three-Year License for Photoshop Elements 2025 for $100 Right Now Pradershika Sharma |...

Mother's Day Deals: Save on AirPods, Apple Watch Bands, Travel Chargers, iPhones, and More Mitchel B...

Bookmark Multiple Tabs in Safari on iPhone Tim Hardwick | usagoldmines.com

Google CEO Suggests iOS 19 Will Feature Built-In Gemini Integration Joe Rossignol | usagoldmines.com

Third US Plant Set to Make Apple Chips Breaks Ground Hartley Charlton | usagoldmines.com

Shark goes for broke and straps a water tank onto its latest fan so it can blast you with cool mist ...

Co-op fending off hackers by shutting down IT systems | usagoldmines.com

Intel’s latest boasts about its integrated graphics makes me less excited for the Nintendo Switch 2 ...

Google CEO hopeful Gemini will be integrated into Apple Intelligence in time for iPhone 17 launch jo...

Proton Mail hit with blocking order in India - here's everything we know so far chiara.castro@future...

'You see the sparkle in her eye again': Andor star Adria Arjona on Bix's cathartic tale of revenge i...

Trump admin accuses Amazon of partnering with 'a Chinese propaganda arm' over tariff listing talk |...

Are chatbot outputs protected speech? Court pressured to clarify. Ashley Belanger | usagoldmines.com

Companies don’t call anymore—only scammers. Stop picking up! | usagoldmines.com

Microsoft targets pesky bugs plaguing the classic Outlook app | usagoldmines.com

Declutter your work space with this mighty mini PC for $150 off | usagoldmines.com

Windows 7 took forever to load if you had a solid background. Now we know why | usagoldmines.com

Fast, sleek, and just $60: The SK Hynix Tube is practically an external SSD | usagoldmines.com

Microsoft CEO claims 30% of its new code is written by AI | usagoldmines.com

This slim 100W laptop power bank is just $40 right now | usagoldmines.com

MSP360 Backup review: Very effective local backup — and free file backup! | usagoldmines.com

Acer’s new esports gaming monitor hits a blistering 600Hz | usagoldmines.com

Rejoice! WhatsApp users will finally be able to make calls from the web | usagoldmines.com

Samsung Sends One UI 7 Update to Galaxy Tab S8, Tab S9, and Tab S10 in US Kellen | usagoldmines.com

This One-Year Subscription to Adobe Lightroom Is on Sale for $120 Right Now Pradershika Sharma | usa...

Meta, Spotify, and Match Launch Coalition Against Apple and Google Hartley Charlton | usagoldmines.c...

Microsoft developing fixes for multiple Outlook and SharePoint Online bugs and outage | usagoldmine...

SentinelOne targeted by Chinese espionage campaign probing customers and infrastructure | usagoldmi...

I loved LG phones because they were affordable, risky, and weird – and the smartphone world could us...

Cronos: The New Dawn developers reveal that it will take around 18 hours to beat dash.wood@futurenet...

These Pixel Earbuds Are $60 Right Now Pradershika Sharma | usagoldmines.com

Mango Languages Is an Alternative to 'AI-First' Duolingo, and It's Free at Libraries David Nield | u...

TSMC committed to Arizona chip plant ahead of potential tariff impact | usagoldmines.com

I'm excited for two very different school-themed horrors after seeing the trailers for Weapons and F...

Exposed Git tokens and secrets are being hoovered up by hacker scans | usagoldmines.com

Quordle hints and answers for Thursday, May 1 (game #1193) | usagoldmines.com

NYT Strands hints and answers for Thursday, May 1 (game #424) | usagoldmines.com

NYT Connections hints and answers for Thursday, May 1 (game #690) | usagoldmines.com

Samsung says a 'dimmer' OLED TV appears just as bright as a 'brighter' LED model, but that misses th...

Uncovering common CDN myths | usagoldmines.com

Samsung Galaxy Z Fold 7 rumored specs: predictions for every key spec | usagoldmines.com

Vulnerability exploitation: The dangers of the open LLM model boom | usagoldmines.com

The biggest PC builder regrets: 6 fatal mistakes to avoid! | usagoldmines.com

USB flash drives are going extinct. Use these alternatives instead | usagoldmines.com

ADT and Yale partner on Z-Wave lock with fingerprint recognition | usagoldmines.com

Today’s best laptop deals: Save big on work, school, home use, and gaming | usagoldmines.com

The 60 Best 2000s Movies You Can Stream Right Now Ross Johnson | usagoldmines.com

Android’s Default Keyboard Is Hiding a Secret Superpower Eric Ravenscraft | usagoldmines.com

iPhone 17 Air USB-C Port May Have This Unusual Design Quirk Tim Hardwick | usagoldmines.com

Case dismissed – Windscribe wins landmark no-log VPN lawsuit in Greece chiara.castro@futurenet.com (...

'Our existing subscriptions are plenty enough for us': Spotify CEO seems to pour water on mooted 'Su...

'Nothing else to live for': Andor season 2 star Faye Marsay breaks down episode 6's soul-crushing mo...

Leave a Reply