{"id":72444,"date":"2024-01-31T19:35:09","date_gmt":"2024-01-31T19:35:09","guid":{"rendered":"https:\/\/entertainment.runfyers.com\/index.php\/2024\/01\/31\/apple-fixes-zero-day-bug-in-apple-vision-pro-that-may-have-been-exploited-techcrunch\/"},"modified":"2024-01-31T19:35:09","modified_gmt":"2024-01-31T19:35:09","slug":"apple-fixes-zero-day-bug-in-apple-vision-pro-that-may-have-been-exploited-techcrunch","status":"publish","type":"post","link":"https:\/\/entertainment.runfyers.com\/index.php\/2024\/01\/31\/apple-fixes-zero-day-bug-in-apple-vision-pro-that-may-have-been-exploited-techcrunch\/","title":{"rendered":"Apple fixes zero-day bug in Apple Vision Pro that &#8216;may have been exploited&#8217; | TechCrunch"},"content":{"rendered":"<p> <br \/>\n<\/p>\n<div>\n<p id=\"speakable-summary\">A day after reporters published their first hands-on review of Apple\u2019s Vision Pro, the technology giant released its first security patch for the mixed reality headset to fix a vulnerability that \u201cmay have been exploited\u201d by hackers in the wild.<\/p>\n<p>On Wednesday, Apple released visionOS 1.0.2, the software that runs on the Vision Pro, with a fix for a vulnerability in WebKit, the browser engine that runs Safari and other web apps. Apple said the bug, if exploited, allowed malicious code to run on an affected device.<\/p>\n<p>It\u2019s the same vulnerability that Apple patched last week when <a href=\"https:\/\/techcrunch.com\/2024\/01\/23\/iphone-users-should-turn-on-apples-stolen-device-protection-feature\/\" target=\"_blank\" rel=\"noopener\">it rolled out iOS 17.3<\/a>, which included fixes for iPhones, iPads, and Apple TV \u2014 all of which rely on WebKit. No patches for this bug, <a href=\"https:\/\/support.apple.com\/en-us\/HT214070\" target=\"_blank\" rel=\"noopener\">officially tracked as CVE-2024-23222<\/a>, were released for Apple Watch.<\/p>\n<p>It\u2019s not immediately clear if malicious hackers used the vulnerability to specifically exploit Apple\u2019s Vision Pro, and Apple spokesperson Scott Radcliffe would not say when asked by TechCrunch.<\/p>\n<p>It also isn\u2019t yet known who was exploiting the vulnerability, or for what reason.<\/p>\n<p>It is not uncommon for malicious actors, such as spyware makers, to target weaknesses in WebKit as a way to break into the device\u2019s underlying operating system and the user\u2019s personal data. WebKit bugs can sometimes be exploited when a victim visits a malicious domain in their browser, or the in-app browser.<\/p>\n<p>Apple rolled out several patches for WebKit bugs last year.<\/p>\n<p>Vision Pro is expected to be available starting Friday.<\/p>\n<\/p><\/div>\n<p><br \/>\n<br \/><a href=\"https:\/\/techcrunch.com\/2024\/01\/31\/apple-vision-pro-zero-day-security-bug-exploited\/\" target=\"_blank\" rel=\"noopener\">Source link <\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>A day after reporters published their first hands-on review of Apple\u2019s Vision Pro, the technology giant released its first security patch for the mixed reality headset to fix a vulnerability that \u201cmay have been exploited\u201d by hackers in the wild. On Wednesday, Apple released visionOS 1.0.2, the software that runs on the Vision Pro, with [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":72445,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[14],"tags":[],"class_list":{"0":"post-72444","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-tech"},"_links":{"self":[{"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/posts\/72444","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/comments?post=72444"}],"version-history":[{"count":0,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/posts\/72444\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/media\/72445"}],"wp:attachment":[{"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/media?parent=72444"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/categories?post=72444"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/tags?post=72444"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}