Get the latest tech news
macOS vulnerability allowed Keychain and iOS app decryption without a password
Today at Nullcon Berlin, a researcher disclosed a macOS vulnerability (CVE-2025-24204) that allowed attackers to read the memory of any process, even with
Today at Nullcon Berlin, a researcher disclosed a macOS vulnerability (CVE-2025-24204) that allowed attackers to read the memory of any process, even with System Integrity Protection (SIP) enabled. Apple Silicon Macs allow iOS apps to run natively on macOS, but their binaries remain encrypted at rest. “The method to monitor entitlement changes is shown in the shared slides, which is to execute the ipsw diff command every time the OS is updated,” he noted.
Or read this on r/apple