To fix a security vulnerability in iOS and iPadOS that it said has been exploited in the wild, Apple distributed out-of-band security patches on Monday.
The vulnerability, which has been given the CVE identifier CVE-2025-24200, has been defined as an authorization problem that could allow a malevolent actor to disable USB Restricted Mode on a locked device as part of a cyberphysical attack.
This implies that in order to take advantage of the vulnerability, the attackers need to have physical access to the device. USB Restricted Mode, which was first introduced in iOS 11.4.1, stops an Apple iOS or iPadOS device from interacting with an accessory if it hasn’t been unlocked and connected to one in the previous hour read more about Apple Patches Actively Exploited iOS Zero-Day CVE-2025-24200 in Emergency Update.
Get up to date on the latest cybersecurity news and enhance your knowledge of cybersecurity with our thorough coverage of the dangers, breaches, and solutions.
