- cross-posted to:
- cybersecurity@zerobytes.monster
- cross-posted to:
- cybersecurity@zerobytes.monster
TL;DR: Apple patched 3 iOS zero-days used to infect an Egyptian presidential candidate’s iPhone with spyware. The attack used HTTP, involved the Egyptian government, and relied on Predator spyware. These vulnerabilities are fixed in iOS versions 16.7 and iOS 17.0.1.
A targeted attack on an egyption presidential candidate, using a complex attack involving 3 different zero days and a compromised cell phone network. Not easy to instrument, or to protect against.
Via this article I learned about the Lockdown mode which totally makes sense for high profile users. If I were a politician or journalist, after reading these two articles, I’d probably enable it: https://arstechnica.com/information-technology/2022/07/introducing-lockdown-from-apple-the-coolest-defense-youll-probably-never-use/