Date: February 11, 2025
The emergency update fixes a critical security flaw (CVE-2025-24200), allowing attackers to bypass USB Restricted Mode on locked devices. Apple urges all users to update immediately.
Apple has rolled out an urgent update, iOS 18.3.1, to address a security flaw that has reportedly been exploited in targeted cyberattacks. The update, released on February 10, 2025, comes just two weeks after iOS 18.3 and includes critical bug fixes and security improvements.
The most significant fix in Apple iOS 18.3.1 is for a zero-day vulnerability identified as CVE-2025-24200. This authorization issue flaw allowed attackers with physical access to a locked device to disable USB Restricted Mode. The feature, introduced in iOS 11.4.1, is designed to prevent unauthorized data extraction from iPhones using digital forensic tools like Cellebrite or GrayKey.
Apple, a leading AI company, acknowledged this vulnerability, stating:
"Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals."
Bill Marczak of The Citizen Lab discovered and reported the flaw at the University of Toronto’s Munk School. Apple has addressed the issue with "improved state management."
The Apple iOS 18.3.1 update is installable on all iPhones from the iPhone XS and onwards. A corresponding iPadOS 18.3.1 update is available for the various models of iPads, and Apple also released iPadOS 17.7.5 for older devices.
To install Apple iOS 18.3.1, users should navigate to Settings > General > Software Update, then select Download and Install. The update is relatively small (676MB on an iPhone 16 Pro Max) and installs within minutes.
This emergency patch precedes the anticipated iOS 18.4 update, which is expected in April, and is rumored to introduce major improvements to Siri. However, given the security risks associated with CVE-2025-24200, Apple users are strongly advised not to wait and to install Apple iOS 18.3.1 immediately.
By Arpit Dubey
Arpit is a dreamer, wanderer, and tech nerd who loves to jot down tech musings and updates. Armed with a Bachelor's in Business Administration and a knack for crafting compelling narratives and a sharp specialization in everything from Predictive Analytics to FinTech—and let’s not forget SaaS, healthcare, and more. Arpit crafts content that’s as strategic as it is compelling. With a Logician mind, he is always chasing sunrises and tech advancements while secretly preparing for the robot uprising.
Reddit Unveils AI-Powered Search Tool for Smarter Results
Reddit launched Reddit Answers, an AI-powered search tool that curates and summarizes discussions to enhance user experience and reduce reliance on Google.
OpenAI Scraps o3 Model, Pushes for Unified GPT-5 in a Major AI Overhaul
OpenAI is canceling its o3 AI model and merging it into GPT-5 for a simpler, more powerful system. A big move to stay ahead in the AI race.
Virtual Reality in Healthcare: Revolutionizing Patient Care
Experience the power of virtual reality in healthcare as it transforms medical training, patient care, and treatment methods with immersive technology for better accuracy, efficiency, and improved outcomes.
Google I/O 2025: Dates Announced for the Tech Giant’s Biggest Event of the Year
Google I/O 2025 is set for May 20-21! Expect big AI reveals, Android 16 updates, and more. Registrations are open for keynotes, demos, and game-changing tech innovations!