Apple Patches Two Actively Exploited iOS Vulnerabilities Used in Sophisticated Attacks

Apple released urgent security updates addressing two actively exploited vulnerabilities: CVE-2025-31200, a memory corruption flaw in Core Audio allowing code execution via malicious audio files, and CVE-2025-31201, an RPAC flaw enabling bypass of Pointer Authentication with arbitrary read/write access. Both were used in sophisticated targeted attacks against specific iOS users. Apple credited its internal team and Google TAG for discovery. Users of iOS, macOS, tvOS, and visionOS devices are urged to update immediately.

Expert Analysis:


The frequency of critical vulnerabilities this year shows that attackers continue to outpace traditional patch cycles. Staying updated is no longer advice.

It is a necessity.

Read the full article here.

Stay informed with us!

You can subscribe to our monthly cybersecurity newsletter to receive updates about us and the industry

Blog

Check the latest updates on threats, stories, events and analysis.

Discord ID card breach

When Customer Support Becomes the Weakest Link: Lessons from the Discord Breach

How Businesses Can Protect Themselves From MatrixPDF Attacks

MatrixPDF Puts Gmail Users at Risk with Malicious PDF Attachments

Swiss e-ID and UAE Pass

Swiss e-ID vs UAE Pass: managing digital government identity