
How to keep your Apple devices safe from AirPlay attacks
Apple's approach to building new features has always been rooted in safety and seamless convenience. Take, for example, AirPlay, a wireless standard created by the company that allows users to stream audio and video from one device to another.
AirPlay works not just across Apple devices, but also on TVs and speakers cleared by the company to offer the wireless streaming facility. That also makes it a ripe target for attacks, and it seems there are, in fact, vulnerabilities in the wireless lanes that could allow bad actors to seed malware and infect more connected devices.
Recommended Videos
Understanding the AirPlay risk
Experts at the security research firm Oligo recently detailed Airborne, a set of flaws in Apple's AirPlay Protocol and the AirPlay Software Development Kit (SDK) that can allow hackers to remotely execute code. These vulnerabilities can let bad actors take control of devices and use the infected machines to broaden the damage.
'An attacker can take over certain AirPlay-enabled devices and do things like deploy malware that spreads to devices on any local network the infected device connects,' Oligo explained. The risk is huge because there are billions of Apple devices out there that support AirPlay, and millions that are sold by other brands.
One of the vulnerabilities could allow hackers to compromise a device and then use it to gain access to a larger network, potentially targeting other devices, too. Depending on the target, the risks range from spying on conversations to tracking a car's location, accessing sensitive information, ransomware attacks, and denial of service.
Apple has patched the vulnerabilities via macOS Sequoia 15.4, tvOS 18.4, macOS Ventura 13.7.5, iPadOS 17.7.6, macOS Sonoma 14.7.5, iOS 18.4 and iPadOS 18.4, visionOS 2.4 updates. However, there are potentially thousands of older devices that will never get patched and remain vulnerable.
What steps do experts suggest?
Of course, the first line of defense to protect yourself across all vulnerable devices is to download the fix released by Apple. But that isn't the full picture. Trevor Horwitz, CISO and founder of TrustNet, says the patch will only work if people install it after the package downloads on their device.
'The simplest and most effective thing you can do is keep your devices updated. That sounds basic, but it's often overlooked,' he says. On an iPhone or iPad, follow this route to install the safety update: Settings > General > Software Update. For macOS, you must walk this path: Apple menu > System. Settings > General > Software Update.
Since attack vectors like Airborne rely on Wi-Fi networks to expand their damage, you must also pay attention to them. Oleh Kulchytskyi, Senior Malware Reverse Engineer at MacPaw's Moonlock, told DigitalTrends that a Zero-Click Remote Code Execution (RCE) is the highest level of security breach.
It should be immediately patched by the companies involved, but as a user, one must take further network-related precautions. 'To stay safe at home, ensure that your router has a strong password and there are no suspicious connections to your network,' Kulchytsky adds.
A safe way to AirPlay
Matthias Frielingsdorf, a veteran iOS researcher and cofounder of iVerify, tells me that everyone should follow basic digital security protocols. Those include installing updates as soon as they are available, maintaining strong network passwords, and most importantly, reducing the surface area for such attacks.
Since AirPlay is the threat vector, users should take proactive steps while using it. 'Disabling this on iOS / macOS / tvOS devices that don't need to be an AirPlay receiver would limit some of the attacks. In public spaces, disabling WiFi on the Mac and iPhone would stop those attacks as well,' says Frielingsdorf.
AirPlay streaming is active by default, and as such, you need to disable it. To do so, follow this path on your iPhone or iPad: Settings > General > AirPlay & Continuity > Ask. You can also set it to Never, if you don't actively utilize this feature. There's also an option to set a password, which I recommend that you enable, while at it.
What about AirPlay itself? Can it be disabled? Yes, it can be turned off entirely. On your iPhone and iPad, go to the AirPlay & Continuity page and turn off the AirPlay Receiver toggle. Alternatively, you can choose to allow AirPlay only for the Current User, instead of keeping it open to everyone in the range.
For Mac users, this is the path you need to follow: Apple Menu > System Settings > General > AirDrop & Handoff > AirPlay Receiver. You can't always patch older or discontinued devices, so it's best to ensure that the machines that are currently in your hands have enabled the right protocols to minimize the risks.
The bottom line
On multiple occasions in the past, security experts have highlighted flaws in wireless transmission systems, such as Bluetooth. But a vulnerability that allows zero-click remote code execution in AirPlay is a cautionary tale. The message is clear.
Apple's security guardrails are solid, but not impenetrable.
'What makes this serious is the integration. AirPlay isn't just a standalone app. It's a system-level service built into iOS, macOS, and tvOS. So the moment that layer is compromised, the attacker could potentially affect multiple devices at once,' TrustNet's Horwitz told Digital Trends.
So, where does that leave an average user who is not savvy about security measures? Well, it's time to set aside notions and market perceptions. Chris Hill, Chief Security Strategist at BeyondTrust, says users must understand the threat landscape instead of living with the idea that a certain ecosystem is safer than the rest.
'Threat actors are opportunistic, looking for the easiest path of least resistance, they will find it, and they did in this case with AirPlay and AirBorne,' he warns. The bottom line is that keep your devices updated, disable features you don't use, and be vigilant with network-related settings.

Try Our AI Features
Explore what Daily8 AI can do for you:
Comments
No comments yet...
Related Articles
Yahoo
28 minutes ago
- Yahoo
Apple loses bid to pause app store reform order in Epic Games case
By Mike Scarcella (Reuters) -Apple has failed to persuade a U.S. appeals court to pause key parts of a federal judge's order requiring the iPhone maker to immediately open its lucrative App Store to more competition. The 9th U.S. Circuit Court of Appeals on Wednesday rejected Apple's request to put the provisions on hold as the tech giant appeals the judge's order, which came in a long-running antitrust lawsuit brought by 'Fortnite' maker Epic Games. U.S. District Judge Yvonne Gonzalez Rogers in April found Apple in contempt of an earlier injunction order she issued in the Epic Games case. The judge on April 30 ordered Apple to end several practices that she said were designed to circumvent the injunction, including a new 27% fee Apple imposed on app developers when its customers complete an app purchase outside the App Store. The court also prohibited Apple from restricting where developers place links to make purchases outside of an app. In its emergency appeal, Apple said the ruling blocked the company from "exercising control over core aspects of its business operations" and forced it to give away free access to its services. Epic Games countered that Apple was trying to continue evading competition and collecting fees that the judge had barred. Apple has faced a "surge of genuine competition" since Gonzalez Rogers issued her April injunction, as developers updated apps with "better payment methods, better deals, and better consumer choice," Epic said. Epic Games sued Apple in 2020 to loosen its control over transactions in applications that use its iOS operating system and how apps are distributed to consumers. Apple mostly won the case, but Gonzalez Rogers in 2021 said Apple must allow developers to more easily steer consumers to potentially cheaper non-Apple payment options. Apple defied that court order to maintain a revenue stream worth billions of dollars, Gonzalez Rogers wrote in April. She also said Apple had misled the court about its efforts to comply with her injunction and referred the company and one of its executives to federal prosecutors for a possible criminal contempt investigation.


CNBC
43 minutes ago
- CNBC
Walser Wealth Management CEO breaks down how to play Apple and other tech names
Rebecca Walser, CEO of Walser Wealth Management, joined CNBC's "Power Lunch" on Wednesday to discuss Apple following a notable downgrade, as well as Netflix and Snowflake . Here's what she had to say about each technology name during the " Three-Stock Lunch " segment. Apple Walser said she agreed with Needham analyst Laura Martin, who downgraded shares of the personal technology giant to hold from buy on Wednesday. Martin said the company is facing relatively high valuation and growth competition. Walser said concerns over President Donald Trump's tariffs have weighed on the iPhone maker, with investors wondering what's next following the expiration of many of the president's delayed levies on July 9. Apple is known for its high proportion of international manufacturing. "It's not really Apple's fault," Walser said. "It's all the tariff talk and all the fact that, they have very heavily relied on supply chains to be in Asia." "This is a direct trade war between the United States and China, and it expires July 9," she added. "It's really concerning to us that we haven't seen headway." Despite the Needham downgrade, most analysts have a buy rating, according to LSEG. The average price target implies shares can rally more than 13% over the next year. That would mark a turn for Apple shares, which have fallen about 19% in 2025. Netflix Walser called Netflix "very expensive." The stock climbed to a 52-week high in Wednesday's session and has soared nearly 40% in 2025. "I would say right now, we are going to be a hold on this, potentially even a sell if we don't see that … subscriber growth and see the actual growth that they're projecting in the next quarter," Walser said. Netflix stopped reporting its quarterly subscriber figures in the first quarter of 2025, and Walser said she is concerned that she doesn't see the data going into those counts. The majority of analysts have a buy rating on the stock, according to LSEG. However, the typical price target suggests shares can slide more than 6% over the next year. Snowflake Walser also deemed data storage play Snowflake an expensive stock and said it could be a risk if the multi-year data investment cycle doesn't pan out as hoped for. Shares also hit a 52-week high on Wednesday and are now up 35% on the year. SNOW NFLX YTD mountain Snowflake and Netflix in 2025 "It's an expensive stock," she said. "And if that deal doesn't materialize, or it doesn't materialize to the extent necessary, then there is going to be a pullback, and you're going to have some unhappy people." Most analysts surveyed by LSEG have a buy rating on the stock. The average analyst foresees more than 6% in upside.


Gizmodo
an hour ago
- Gizmodo
This Acer 7-Port USB-C Adapter Is Nearly Free, Amazon Hits All-Time Low Price
Anyone who's used a modern laptop knows the frustration of limited ports. Whether you're on a sleek MacBook that's abandoned the HDMI port entirely or a Windows ultrabook with just one or two USB-C slots, connecting all your devices can quickly become a hassle. The solution? A reliable and compact adapter that covers all your needs. Acer is a very popular brand in computer peripherals and delivers just that with its 7-in-1 USB-C hub, a tiny accessory that makes a gigantic impact in daily life. Now, this Acer adapter is available on Amazon at its all-time lowest price: Usually, it costs $24 but you can get it for just $17 which is a huge 28% discount. For less than twenty bucks, you can transform your laptop's connectivity and never look back at your limited ports again. See at Amazon Ask More From Your Laptop Crafted from solid aluminium, this Acer adapter looks thin but also provides excellent heat dissipation for long-lasting durability. The center uses a single USB-C port and expands it into seven important connections: a 4K HDMI port, two USB-A 3.1 Gen 1 ports for quick data transfer, a USB-C data port, a dedicated USB-C PD charging port supporting up to 100W power supply, and SD and MicroSD card readers. This means that you're able to plug in an external screen, transfer files at lightning speed, charge your laptop and access memory cards on your camera all at the same time. You will appreciate the 4K HDMI port which gives you the ability to mirror or extend your laptop screen in crisp Ultra HD. Whether you're giving a presentation or streaming movies, the adapter supports 4K resolution at 30Hz for a clear and immersive viewing experience. It's especially ideal for MacBook users who miss having a built-in HDMI port but it works seamlessly with a wide range of devices, including Windows laptops and Chromebooks. With Power Delivery support of up to 100W, you can keep your laptop charged while using all the other ports, never having to sacrifice productivity and charging. It's great for professionals and heavy use cases where their devices will be needed for high-intensity use throughout the day. The two USB-A 3.1 and the USB-C data port offer up to 5Gbps transfer speeds which facilites the easy transfer of large files, data backup or adding peripherals like keyboards, mice, and external hard drives. Short and sweet, Acer 7-in-1 USB-C Hub is a must-have if you're tired of juggling dongles and adapters. At its all-time-low Amazon price, now is the time to level up your setup. See offer