惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

The GitHub Blog
The GitHub Blog
博客园 - 三生石上(FineUI控件)
V
V2EX
博客园 - 司徒正美
小众软件
小众软件
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
T
Tailwind CSS Blog
Last Week in AI
Last Week in AI
雷峰网
雷峰网
月光博客
月光博客
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
Apple Machine Learning Research
Apple Machine Learning Research
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
S
SegmentFault 最新的问题
美团技术团队
Hugging Face - Blog
Hugging Face - Blog
WordPress大学
WordPress大学
宝玉的分享
宝玉的分享
爱范儿
爱范儿
博客园 - 聂微东
量子位
J
Java Code Geeks
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
Vercel News
Vercel News

News | Mail Online

Ferrari and Mercedes drivers are among 'brazen' motorists stealing £1.2m of petrol a week as fuel prices soar due to Iran war Mystery over how teens drove off M1 bridge in crash that killed the pair as images show how minibus was struck by car in thousand-to-one twist of fate Business implicated in the methanol poisonings that killed two Aussie backpackers claims it's been cleared Parents' fury that army's failure to notice their son had gone missing for two weeks may have cost him his life Putin's shadow fleet sailors can claim asylum if Britain seizes their ships in the English Channel, ministers fear 'We are now in a world war': Chilling prediction by billionaire US hedge fund founder Ray Dalio - and the cycle of events that has put us 'two steps from conflict between major global powers' A judge was told it 'WASN'T NECESSARY' for Julian to show his face in court. Then he murdered a mum, her unborn baby, friend and her aunt in a crime that appalled Australia Widow of British pensioner, 77, killed in Canary Islands bus crash was among the 27 passengers sent to hospital after suspected brake failure sent it plunging down ravine Woman died when she slipped from Good Samaritan's grip as he tried to save her from bridge fall after boyfriend row Bus surfing idiots risk their lives by clinging onto back of the Number 114 to avoid paying £1.75 fare Iran claims US has agreed to release frozen assets but Washington denies the move as JD Vance holds peace talks in Pakistan Coroner accused of stealing valuables from the dead pleads no contest Old interview comes back to haunt Albo as the fuel crisis continues to hit Aussies hard How trusting my late mum's financial adviser turned out to be the most catastrophic money decision I've ever made Aspiring California Governor Eric Swalwell apologizes to wife in video denying sexual assault claims as calls for him to quit mount New renderings show details of 250-foot tall 'Arc de Trump' set to tower over DC as president confirms he has officially submitted plans Queue jumpers, loud chewers and cups of tea going cold... researchers reveal the things Britons love to hate Keir Starmer's digital ID scheme mocked as 'ridiculous' after minister confirms it will be optional - and will not include a person's biological sex Senior health officials discuss banning doctors from going on strike in bid to stop long-running dispute Cocaine worth £256m and 'heavier than an adult RHINO' found stashed in banana boxes in one of UK's biggest ever hauls Starmer calls NATO 'the single most effective military alliance the world has ever known' after Trump's threatens to quit the bloc - but admits Europe must do more NASA's Artemis II astronauts send first messages and display surprising ability after moon mission 'It's a smart move': What a source close to the Trumps told me about why Melania dropped Epstein bombshell: CAROLINE GRAHAM We're sitting on a goldmine! North Sea oil hits record high. So WHY won't Red Ed drop his Net Zero madness and back new drilling to give Britain a boost? The US took out Iranian leaders and facilities with surgical precision - but the Islamic Republic is winning the propaganda war... with comedy Lego videos, writes DAVID PATRIKARAKOS Two teens die after car plunges from bridge and crashes into minibus on motorway - as families spend hours trapped in traffic following road closure Parish church magazine forced to apologise after poet offended woke readers with verses on illegal migrants, benefit scroungers and fat people Rachel Reeves is warned fuel tax raid will push thousands of businesses 'to the brink', ramp up food costs for households and stoke inflation Trump says Melania 'had a right' to talk about Epstein but admits he might have handled surprise statement differently Nancy Pelosi calls for married wannabe Newsom successor to abandon crumbling campaign over sexual assault claims
Seven iPhone models compromised by major security breach....
Stacy Liberatore · 2026-06-20 · via News | Mail Online

Cybersecurity researchers have uncovered a new security flaw affecting millions of older iPhones.

The vulnerability, identified by security firm Paradigm Shift, impacts seven popular iPhone models powered by Apple's A12 and A13 Bionic chips.

The affected devices include the iPhone XS, iPhone XS Max, iPhone XR, iPhone 11, iPhone 11 Pro, iPhone 11 Pro Max and iPhone SE (2nd generation).

Experts warn the weakness could allow attackers to gain deep access to affected devices and bypass key security protections.

Once compromised, hackers could potentially steal personal information, install hidden spyware and gain control over sensitive parts of the phone.

The flaw is buried inside the processor itself rather than Apple's software, making it particularly concerning for security researchers.

According to Paradigm Shift, the vulnerability is located in the BootROM, the first code that runs when an iPhone powers on.

Because the issue exists at the hardware level, it cannot be fully eliminated through a traditional software update.

The vulnerability, identified by security firm Paradigm Shift, impacts seven popular iPhone models powered by Apple's A12 and A13 Bionic chips (stock) 

The Daily Mail has contacted Apple for comment. 

The vulnerability has been dubbed 'usbliter8' by the researchers who discovered it. 

Unlike many security flaws that are fixed through routine software updates, this issue stems from the hardware itself.

At the center of the problem is the BootROM, which is the first code executed when an iPhone powers on. 

Because the code is permanently embedded into the processor during manufacturing, it cannot be rewritten later through a standard iOS update.

Researchers said the flaw exploits the USB controller built into the chip. 

During startup, the controller temporarily stores incoming USB data packets in a small memory area known as a buffer.

By sending a carefully crafted sequence of unusually small data packets, the researchers found they could manipulate the controller into writing information into protected sections of memory where it should never be allowed to go.

The affected devices include the iPhone XS, iPhone XS Max, iPhone XR, iPhone 11, iPhone 11 Pro, iPhone 11 Pro Max and iPhone SE (2nd generation) 

Paradigm Shift described the issue as a hardware design oversight rather than a software bug.

The researchers noted that newer iPhones are not affected because Apple changed the underlying hardware design in later generations of its processors.

Interestingly, some older devices are also immune. The A11 chip used in the iPhone X avoids the issue because its USB driver resets a critical memory pointer after processing each data packet, preventing the exploit from working.

While the vulnerability raises concerns among security experts, the practical risk to most users remains limited. 

Unlike many cyberattacks that can be carried out remotely over the internet, exploiting this flaw requires physical access to the device and specialized equipment.

However, security researchers warn that hardware-level vulnerabilities are among the most difficult problems to address because they remain embedded in the silicon long after a device leaves the factory.

In May, iPhone users were alerted to a texting scam that has drained bank accounts. 

Lancaster County resident Barbara, who requested her last name not be used, lost $24,000 after receiving a text message that read 'Apple high alert,' she told local NBC affiliate WGAL.

The message claimed money had been removed from her bank account, prompting her to call a specific number if she did not move the money herself.

When Barbara called the number, a man said her account had been compromised, and hackers could access her funds, urging her to send her money to a protected bank - and she did exactly that.

Following the scammer's instructions, Barbara went to her bank, withdrew the money and transferred it to the account she had been given.

Apple has warned users about this type of scheme, known as social engineering, which is a targeted attack that relies on impersonation, deception, and manipulation to gain access to your personal data.

In this attack, scammers will pretend to be representatives of a trusted company or entity over the phone or through other communication methods.

They will often use sophisticated tactics to persuade you to hand over personal details such as sign-in credentials, security codes and financial information.