Get the latest tech news

macOS vulnerability allowed Keychain and iOS app decryption without a password


Today at Nullcon Berlin, a researcher disclosed a macOS vulnerability (CVE-2025-24204) that allowed attackers to read the memory of any process, even with

Today at Nullcon Berlin, a researcher disclosed a macOS vulnerability (CVE-2025-24204) that allowed attackers to read the memory of any process, even with System Integrity Protection (SIP) enabled. Apple Silicon Macs allow iOS apps to run natively on macOS, but their binaries remain encrypted at rest. “The method to monitor entitlement changes is shown in the shared slides, which is to execute the ipsw diff command every time the OS is updated,” he noted.

Get the Android app

Or read this on r/apple

Read more on:

Photo of Password

Password

Photo of keychain

keychain

Photo of macOS vulnerability

macOS vulnerability

Related news:

News photo

Keychain raises $30M and launches AI operating system for CPG manufacturers

News photo

CPG startup Keychain snags $30M to build in India, grow in the US

News photo

Feds Used Local Cop's Password to Do Immigration Surveillance With Flock Cameras