By using this site, you agree to our Privacy Policy and Terms of Service.
Accept
Absolute Geeks UAEAbsolute Geeks UAE
  • STORIES
    • TECH
    • AUTOMOTIVE
    • GUIDES
    • OPINIONS
  • REVIEWS
    • READERS’ CHOICE
    • ALL REVIEWS
    • ━
    • SMARTPHONES
    • CARS
    • HEADPHONES
    • ACCESSORIES
    • LAPTOPS
    • TABLETS
    • WEARABLES
    • SPEAKERS
    • APPS
  • WATCHLIST
    • TV & MOVIES REVIEWS
    • SPOTLIGHT
  • GAMING
    • GAMING NEWS
    • GAME REVIEWS
  • +
    • OUR STORY
    • GET IN TOUCH
Reading: Apple and Google rush emergency fixes after targeted zero-day attacks
Share
Notification Show More
Absolute Geeks UAEAbsolute Geeks UAE
  • STORIES
    • TECH
    • AUTOMOTIVE
    • GUIDES
    • OPINIONS
  • REVIEWS
    • READERS’ CHOICE
    • ALL REVIEWS
    • ━
    • SMARTPHONES
    • CARS
    • HEADPHONES
    • ACCESSORIES
    • LAPTOPS
    • TABLETS
    • WEARABLES
    • SPEAKERS
    • APPS
  • WATCHLIST
    • TV & MOVIES REVIEWS
    • SPOTLIGHT
  • GAMING
    • GAMING NEWS
    • GAME REVIEWS
  • +
    • OUR STORY
    • GET IN TOUCH
Follow US

Apple and Google rush emergency fixes after targeted zero-day attacks

GUSS N.
GUSS N.
Dec 15

Google and Apple have expanded their emergency security responses this week after uncovering a coordinated hacking campaign that relied on previously unknown software vulnerabilities, commonly referred to as zero-day exploits. Both companies have now confirmed that the flaws were actively abused before patches were available, reinforcing concerns that the attacks were carried out by a highly capable actor rather than opportunistic criminals.

Apple’s updates add important technical detail to what the company has described as an “extremely sophisticated attack against specific targeted individuals.” According to its security bulletins, the vulnerabilities were exploited on devices running versions of iOS prior to iOS 26. Apple does not use this language lightly, and it has historically been associated with real-world surveillance operations rather than broad consumer malware campaigns.

One of the vulnerabilities, tracked as CVE-2025-43529, affects WebKit, the browser engine that underpins Safari as well as Mail, the App Store, and numerous third-party applications across iOS, macOS, and Linux. The flaw allows remote code execution through maliciously crafted web content, meaning a victim could be compromised simply by viewing a booby-trapped page. Apple credits the discovery of this issue to Google’s Threat Analysis Group, a unit that focuses on state-backed hacking operations and commercial spyware vendors.

The second vulnerability, CVE-2025-14174, is also tied to WebKit and could lead to memory corruption if exploited. Apple says this flaw was uncovered through a joint effort between its own security teams and Google’s Threat Analysis Group, underscoring the level of cooperation prompted by the seriousness of the campaign.

Apple has confirmed that affected hardware includes iPhone models from the iPhone 11 onward, along with a wide range of iPads, including iPad Pro, iPad Air, standard iPad, and iPad mini models released over the past several years. The company has issued fixes across its software ecosystem, including iOS 26.2, iPadOS 26.2, iOS 18.7.3, iPadOS 18.7.3, macOS Tahoe 26.2, watchOS 26.2, tvOS 26.2, visionOS 26.2, and Safari 26.2.

Google’s response appears closely linked. Earlier in the week, the company released Chrome updates addressing several vulnerabilities, one of which it acknowledged was already under active exploitation. While initial disclosures were sparse, Google later updated its advisory to note that the issue had been identified by Apple’s security engineering team alongside Google’s Threat Analysis Group. That attribution is unusual and suggests the same threat actor may have been targeting multiple platforms using tailored exploits.

Zero-day attacks remain among the most dangerous tools in modern cyber operations because they give defenders little warning and are often deployed selectively against journalists, political figures, activists, and others of strategic interest. Neither Apple nor Google has disclosed who was targeted or how many users were affected, citing the ongoing nature of their investigations.

Taken together, the parallel emergency patches and shared attribution point to a coordinated and well-resourced adversary capable of operating across competing ecosystems. For users, the episode reinforces the importance of installing security updates promptly. For the industry, it highlights how the most advanced digital threats increasingly blur platform boundaries, forcing rivals to collaborate when exploits are already being used in the wild.

Share
What do you think?
Happy0
Sad0
Love0
Surprise0
Cry0
Angry0
Dead0

WHAT'S HOT ❰

UAE dirham symbol approved for unicode, arriving on keyboards in 2026
Paramount to acquire Warner Bros Discovery in $110 billion media merger
ChatGPT nears 1 billion weekly users as OpenAI reports 900m milestone
Nintendo reveals $70 Game Boy Jukebox for Pokémon’s 30th anniversary
Nothing Headphone (a) confirmed for March 5 with bold yellow finish
Absolute Geeks UAEAbsolute Geeks UAE
Follow US
AbsoluteGeeks.com was assembled by Absolute Geeks Media FZE LLC during a caffeine incident.
© 2014–2026. All rights reserved.
Proudly made in Dubai, UAE ❤️
Upgrade Your Brain Firmware
Receive updates, patches, and jokes you’ll pretend you understood.
No spam, just RAM for your brain.
Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?