logo
American iPhones Maybe Targeted In Spyware Attacks

American iPhones Maybe Targeted In Spyware Attacks

Forbes2 days ago

Were iPhones really attacked?
A new report from the team at iVerify warns that a 'previously unknown' vulnerability in iOS maybe enabled a highly targeted attack on iPhones in the U.S. as well as Europe. This flaw was not in the core messaging architecture itself, but in its nickname feature.
'Any increase in the size of a codebase is going to introduce attack opportunities,' iVerify told me. And that's the case here. When a user updates their profile, 'nickname, photo, or wallpaper,' this triggers "a 'Nickname Update' on a recipient's device."
Trivial though it might seem, that nickname update process is a data transmission from one device to another, it's implicitly trusted data and it's within the secure enclave. 'This vulnerability was present in iOS versions up to 18.1.1 and fixed in iOS 18.3.1.'
While there's no doubting the flaw and the fix, there is no concrete proof it was exploited in the wild. 'We analyzed crash data from nearly 50,000 devices," iVerify says, "and found that the imagent crashes related to Nickname Updates are exceedingly rare, comprising less than 0.001% of all crash logs collected.'
But those rare instances appeared only on 'devices belonging to individuals likely to be targeted by sophisticated threat actors.' Sometimes, Occam's Razor really does apply. Those high-risk individuals were affiliated with 'political campaigns, media organizations, tech companies, and governments in the EU and U.S.'
Delete All Texts On Your Phone That Look Like This
These are exactly the type of individuals Apple says should use its Lockdown Mode, which restricts a raft of iPhone features and is intended to shutdown attacks that might otherwise get through. It's unclear whether that would have mitigated this risk — and irrelevant now as it's patched. But it certainly makes an iPhone more secure.
'iOS remains a robust and secure operating system,' iVerify told me. 'iMessage is likely targeted not because it's insecure but instead because it's popular." That said, it's toeing a tricky line between feature-rich messenger and secure comms tool.
Signal is better, iVerify says, if you want to really secure your comms with a COTS platform. That said, as we've seen before, iMessage is on all iPhones and is almost never disabled, and so if there is a working zero-click attack, it will likely get through.
On that note, 'Signal is open source,' iVerify says, "which does have security advantages in the sense that it's transparent and therefore easier for researchers to examine. And it's a simple code base, which does reduce the potential attack surface.'
Google Confirms Most Gmail Users Must Upgrade Accounts
iVerify reports that forensic examination of one affected device "provided evidence suggesting exploitation: several directories related to SMS attachments and message metadata were modified and then emptied just 20 seconds after the imagent crash occurred. This pattern of deleting potential evidence mirrors techniques observed in confirmed spyware attacks where attackers 'clean up' after themselves."
But again, this is speculation ands there's no confirmation or attribution, as Apple will be keen to emphasize. While there's 'no smoking gun,' iVerify says, 'definitively proving exploitation exists, when taken together, this body of evidence gives us moderate confidence these crashes indicate targeted exploitation attempts.'
I have reached out to Apple for any comments on this report. iMessage has been exploited before and whether or not that's what has happened here, it will remain a target — as will WhatsApp and all other apps and platforms that run on most devices. Exploiting such a vulnerability is the easiest way to compromise an endpoint, as is especially relevant at the moment when it comes to encrypted data.
For most users though, your biggest iMessage risks remains texts with malicious lures and crafty links that trick you into clicking. These highly targeted attacks — real or not — should not be a concern. Unpaid tolls and undelivered packages, though…

Orange background

Try Our AI Features

Explore what Daily8 AI can do for you:

Comments

No comments yet...

Related Articles

Diplomatic win for UK hosting US-China trade talks
Diplomatic win for UK hosting US-China trade talks

Yahoo

time30 minutes ago

  • Yahoo

Diplomatic win for UK hosting US-China trade talks

Sky News understands that the Trump administration approached the UK government to ask if it would host round two of the US-China trade talks. This is a useful 'diplo-win' for the UK. The first round was held in Geneva last month. News of that happening came as a surprise. The Chinese and the Americans were in the midst of a Trump-instigated trade war. President Trump was en route to Saudi Arabia and suddenly we got word of talks in Switzerland. They went surprisingly well. US treasury secretary Scott Bessent and his Chinese counterpart He Lifeng, met face-to-face and agreed to suspend most tariffs for 90 days. But two weeks later, the Trump administration accused Beijing of breaking the agreements reached in Geneva. Beijing threw the blame back at Washington. On Wednesday, Donald Trump and Xi Jinping spoke by phone. The Chinese claimed this call was at the Americans' request. Either way, the consequence was that the talks were back on track. "I just concluded a very good phone call with President Xi of China, discussing some of the intricacies of our recently made, and agreed to, trade deal," President Trump said this week. From that call came the impetus for a second round of talks. A venue was needed. In stepped the UK at short notice. Beyond being geographically convenient, UK government sources suggest that Britain is geopolitically in the right place right now to act as this bridge and facilitator. The UK-China relationship is in the process of a "reset". Other locations, like Brussels or other EU capitals, would have been less workable. Crucially too, for the UK, this is also potentially advantageous as it seeks to get its own UK-US trade agreement, to eliminate or massively reduce tariffs, over the line. Talks on reaching the "implementation phase" have been near-continuous since the announcement last month, but having the American principals in London is a plus. Sideline talks are possible, but even the presence of the US team in the UK is helpful. Read more from Sky News:Man wrongly deported from US to El Salvador has been returned to face criminal chargesMore than 40 'narco-boat' drug smugglers arrested in major police sting For all the chaos that President Trump is causing with his tariffs, he has instigated face-to-face conversations as he seeks resets. Key players are sitting down around tables - yes, to untangle the trade knots which Trump tied, but this whole episode has pulled foes together around the same table; it has forced relationships and maybe mutual understanding. That's useful. And for this next round, between superpowers, the UK is the host. Also useful.

4 ChatGPT Prompts  Emerging Leaders Should Be Using In 2025
4 ChatGPT Prompts  Emerging Leaders Should Be Using In 2025

Forbes

time31 minutes ago

  • Forbes

4 ChatGPT Prompts Emerging Leaders Should Be Using In 2025

Using ChatGPT to help develop as an effective leader Whether you're a teen entrepreneur building your first business team or an educator stepping into department leadership, the desire to lead effectively is often stronger than the knowledge of how to do it well. The challenge? Most leadership development happens through expensive coaching, lengthy programs, or trial-and-error experiences that can be costly and time-consuming. Artificial intelligence offers a practical solution. When used strategically, ChatGPT becomes more than a chatbot—it transforms into a personal development coach that helps clarify thinking and strengthen decision-making skills. These four ChatGPT prompts help emerging leaders build self-awareness, navigate real-world challenges, and lead with greater confidence. Self-awareness distinguishes effective leaders from those who are not, yet most people lack training in productive self-reflection. This prompt positions ChatGPT as an executive coach, generating questions that dig beneath surface-level concerns. Rather than vague journaling, this approach creates structured reflection. The AI identifies patterns, such as perfectionism, fear of visibility, or unclear priorities, that may be limiting progress. How to maximize results: After answering the five questions, follow up with: "Can you summarize the mindset I seem to be operating from? What belief is driving my hesitation?" This moves the conversation from symptoms to root causes. A teen entrepreneur might discover they're avoiding reaching out to potential customers not because they lack time, but because they fear adults won't take them seriously. A teacher might realize they're hesitating to implement new classroom management strategies not because of workload, but because they're worried about appearing inexperienced to their colleagues. This awareness alone can shift behavior and open new opportunities. New leaders typically either over-function by attempting to control every detail or under-function by failing to establish clear expectations. This prompt provides a preview of common challenges and practical prevention strategies. Anticipating leadership challenges enables proactive decision-making rather than reactive crisis management. Understanding potential pitfalls helps new leaders develop strategies before problems emerge. Make it specific: Add context for better results. For example: "I'm a teen founder leading my first team of three classmates on our social media marketing business. What traps should I watch out for when my team members are also my friends?" Or: "I'm a first-year teacher managing parent volunteers for our school fundraiser. How do I maintain authority while staying collaborative?" Advanced application: Request scenarios: "Give me an example of what micromanaging versus clear leadership looks like in a group chat with teen team members." This transforms abstract concepts into concrete behaviors you can recognize and adjust. Many first-time teen leaders discover that setting clear expectations with friends-turned-teammates strengthens their business relationships. Teachers often find that being direct about volunteer responsibilities yields better outcomes than relying on people to figure things out on their own. Effective leaders adjust their approach to suit the situation. This prompt helps explore different leadership styles and consider how each might affect team dynamics and project outcomes. When a teen entrepreneur faces team members who aren't meeting deadlines for their custom sticker business, or when a teacher deals with students who seem disengaged during group projects, ChatGPT might suggest: Directive approach: Implement stricter deadlines with clear consequences. A teen might create formal check-in schedules with team members, while a teacher might establish daily progress reports for project groups. Coaching approach: Meet individually with team members to identify obstacles and realign on goals. This builds relationships and addresses root issues, but requires a more significant time investment. Visionary approach: Reconnect the team to the larger purpose behind their work. A teen entrepreneur might remind their team about the impact their business will have on their college applications, while a teacher might help students see how their project connects to real-world applications. Follow-up question: "Which of these approaches aligns most with my leadership style, and how can I combine elements of all three without confusing the team?" This framework helps young leaders move beyond their default style to consider what the specific situation requires. Teen entrepreneurs often discover they've been trying to be everyone's friend instead of a clear leader, while new teachers realize they've been defaulting to the coaching approach when some situations require more direct guidance. This prompt shifts perspective from uncertainty to clarity by using your existing leadership knowledge. Instead of asking, "What should I do?" it asks, "What would the best version of me already know to do?" Advanced variation: "Act like my future self three years from now—someone who has grown as a leader. What advice would they give me about this situation?" This temporal shift helps make decisions based on long-term principles rather than short-term fears. For deeper insight: Ask ChatGPT to explain why that version of you would act that way. This reveals the values and principles you're developing as a leader. A teen entrepreneur might use this prompt when deciding whether to fire a team member who is consistently late to virtual meetings, while a teacher might apply it when considering how to address a parent who is undermining classroom policies. The "future self" approach often reveals that effective leadership requires having difficult conversations rather than avoiding them. These ChatGPT prompts are most effective when used consistently rather than sporadically. Schedule weekly 15-minute sessions to work through one prompt, focusing on current leadership challenges. Save responses that provide valuable insights and track patterns over time. The goal isn't to replace experience or mentorship but to accelerate learning through structured reflection. Leadership develops through practice, feedback, and iteration—ChatGPT creates more opportunities for productive self-examination. While AI can provide valuable frameworks and perspectives, real leadership development happens through application. Use these prompts to clarify thinking, then test insights through actual leadership situations. Document what works and what doesn't. Share learnings with mentors or peer groups. The combination of AI-powered reflection and real-world practice creates a powerful development cycle that enables emerging leaders to build capabilities more quickly than traditional methods alone. Leadership isn't about having all the answers—it's about asking better questions and acting on the insights. These ChatGPT prompts help accelerate that process, transforming everyday challenges into leadership development opportunities.

Seattle man charged with string of burglaries at the homes of NFL and MLB stars
Seattle man charged with string of burglaries at the homes of NFL and MLB stars

Washington Post

time33 minutes ago

  • Washington Post

Seattle man charged with string of burglaries at the homes of NFL and MLB stars

SEATTLE — A Seattle man was charged Friday with a string of burglaries at the homes of prominent current and former football and baseball players, marking the latest example of well-known athletes being targeted in home thefts. Earl Henderson Riley IV, 21, was charged with several counts of residential burglary in both occupied and unoccupied homes, along with first-degree robbery, according to the King County Prosecuting Attorney's Office.

DOWNLOAD THE APP

Get Started Now: Download the App

Ready to dive into the world of global news and events? Download our app today from your preferred app store and start exploring.
app-storeplay-store