Tech

Millions of Apple AirPlay devices susceptible to ‘AirBorne’ zero-click RCE attacks, so patch now

Share
Share


  • Security researchers found dozens of flaws in Apple’s AirPlay protocol
  • Some of them allowed remote code execution attacks
  • Apple has released patches addressing the flaws

Apple’s AirPlay Protocol and AirPlay Software Development Kit (SDK) carried numerous vulnerabilities that could be abused to run remote code execution (RCE) attacks, man-in-the-middle (MitM) attacks, or denial of service (DoS) attacks. To make matters worse, some of these vulnerabilities could be used in zero-click attacks, meaning to pull it off – no interaction from the victim is required.

Cybersecurity researchers Oligo Security found 23 flaws and collectively dubbed them AirBorne. Two of the flaws could be used in RCE attacks, which are now tracked as CVE-2025-24252, and CVE-2025-24132. There is also CVE-2025-24206, a user interaction bypass vulnerability that allows crooks to bypass “Accept” click requirements on AirPlay requests.

Share

Leave a comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Related Articles
Real-time boundary detection from noisy images and single-shot HDR imaging expand applications
Tech

Real-time boundary detection from noisy images and single-shot HDR imaging expand applications

Credit: Purdue University Patent-pending imaging technologies created in Purdue University’s College of...

Samsung Galaxy Z Flip 7 rumored specs: predictions for every key spec
Tech

Samsung Galaxy Z Flip 7 rumored specs: predictions for every key spec

The Samsung Galaxy Z Flip 7 might not be a comprehensive upgrade...

Agatha Christie’s AI ghost is here to teach you how to kill…at writing mystery stories
Tech

Agatha Christie’s AI ghost is here to teach you how to kill…at writing mystery stories

BBC Maestro has launched a writing course taught posthumously by an AI...

Online shopping is now a bot fest — real users just lost the internet to AI-powered fake shoppers
Tech

Online shopping is now a bot fest — real users just lost the internet to AI-powered fake shoppers

Report warns sophisticated bots mimic human behavior so well outdated defenses don’t...