Researchers studying cybersecurity have found a number of security flaws in Apple’s AirPlay protocol that have since been fixed. If an attacker manages to take advantage of these flaws, they might take control of vulnerable devices that use the proprietary wireless technology.
The Israeli cybersecurity firm Oligo has given the flaws the aggregate moniker AirBorne.
According to security researchers Uri Katz, Avi Lumelsky, and Gal Elbaz, these flaws might be used by attackers to possibly take over AirPlay-capable devices, including both Apple products and third-party devices that use the AirPlay SDK.
A wormable zero-click RCE exploit can be created by combining some of the vulnerabilities, such as CVE-2025-24252 and CVE-2025-24132, which allows malicious actors to install malware that spreads to devices on any local network that the compromised device connects read more about Wormable AirPlay Flaws Enable Zero-Click RCE on Apple Devices via Public Wi-Fi.
Get up to date on the latest cybersecurity news and enhance your knowledge of cybersecurity with our thorough coverage of the dangers, breaches, and solutions.
