การยินยอมใช้คุกกี้

COOKIE CONSENT

เราใช้คุกกี้เพื่อปรับปรุงประสบการณ์การใช้งาน วิเคราะห์การเข้าใช้เว็บไซต์ และนำเสนอเนื้อหาที่เกี่ยวข้อง ท่านสามารถเลือกประเภทคุกกี้ที่ยินยอมได้ ดูรายละเอียดเพิ่มเติมใน ประกาศคุกกี้

Application Security

Apple Issues Emergency Patch for CoreGraphics Zero-Day

FORTSECURE GLOBAL· 2026-09-29🛰 The Register - Security
#Apple#Vulnerability#Cybersecurity#Arbitrary Code Execution
Apple Issues Emergency Patch for CoreGraphics Zero-Day

Apple has addressed a critical zero-day vulnerability in CoreGraphics that was actively exploited to achieve arbitrary code execution.

Understanding the CoreGraphics Vulnerability

Apple recently released urgent security updates to address a critical zero-day flaw in its CoreGraphics framework. Identified by researchers at Meta, this vulnerability allows attackers to gain arbitrary code execution on target devices through a maliciously crafted file. Because this flaw is already being actively exploited in targeted attacks, users are urged to update their devices to the latest OS versions immediately. This incident highlights the inherent risks of processing complex media files and the continuous need for robust input validation mechanisms in operating system components. ## Practical Security Recommendations

To safeguard your environment, we recommend the following actions: (1) Enforce a centralized update policy that mandates patching across all corporate devices as soon as Apple releases security bulletins. (2) Utilize mobile device management (MDM) solutions to verify that all endpoints are on the latest secure versions. (3) Advise employees to exercise extreme caution when opening files from untrusted sources, even if they appear to originate from known contacts, as spear-phishing remains a common delivery vector for such exploits.


แหล่งที่มา: The Register - Security เผยแพร่ครั้งแรก: Tue, 29 Sep 2026 16:30:00 +0200 บทความต้นฉบับ: อ่านต้นฉบับ

Source Attribution

แหล่งที่มา: The Register - Security

เผยแพร่ครั้งแรก: Tue, 29 Sep 2026 16:30:00 +0200

บทความต้นฉบับ: https://www.theregister.com/security/2026/09/29/apple-patches-coregraphics-zero-day-already-exploited-in-targeted-attacks/5299721

อ่านบทความต้นฉบับ ↗
ถูกใจบทความนี้

* Facebook / LinkedIn ไม่อนุญาตให้ใส่ข้อความให้ล่วงหน้า — กดปุ่มจะคัดลอกข้อความให้ก่อน เปิดหน้าแชร์แล้ววาง (paste) ได้เลย พรีวิวการ์ดจะแสดงอัตโนมัติเมื่อวางลิงก์

← กลับไปหน้า Blog