Skip to main content

I am once again asking you to update your Apple devices

Most updates are like this now, but that doesn’t make them less important. | Photo by Amelia Holowaty Krales / The Verge

Well, here we are again: I’m writing an article to tell you that you should really update your iPhone, iPad, or Mac as soon as possible, because the latest software for them fixes some pretty nasty bugs. The security notes for iOS / iPadOS 15.6.1 and macOS 12.5.1 describe fixes for bugs in the OS’ kernel (basically the core that controls everything) and WebKit that could allow attackers to run malicious code on your device. The notes also warn that the bugs may have actively been exploited.

This is, unfortunately, something like the third or fourth time I’m writing a post explicitly asking people to update their iPhones or Macs to patch some pretty serious security flaws. And the truth is, I could’ve written this exact post even more times than that — there have been 13 updates to iOS 15 since its initial release, and nine of them have fixed some sort of arbitrary code execution bug. Oftentimes some of those bugs would allow attackers to obtain kernel privileges.

What’s more, five of those security updates included the “Apple is aware of a report that this issue may have been actively exploited” warning.

So while you’ve probably done this plenty of times this year (and, honestly, the years before that), I’m going to repeat the steps to update your phone: go to Settings > General > Software Update. On the Mac, go to System Preferences > Software Update.

Constant security updates aren’t necessarily a bad thing. Sure, they could be an indication that a lot of bugs are slipping into software, but they could just as easily mean that a company has gotten really good at finding existing issues and stamping them out. The reason I’m pointing out Apple’s recent track record isn’t to shame it, but to remind everyone that updates these days are pretty important, and that they should be installed ASAP.

Yes, it’s actually really annoying to constantly update your computer or phone. No one wants their devices knocked out of commission for the few minutes it takes to install an update. But Apple is working on a way to make important security updates easier and more automatic.

iOS and iPadOS 16, along with macOS Ventura, will include something called “Rapid Security Response,” which seems like it’ll let Apple push security updates to your device that don’t require a restart. While some updates will probably still require a reboot (it’s hard to patch an issue with a kernel while the OS is running), the feature could take away at least some of the burden of keeping your device secure.

The company’s also introducing an “extreme” security setting called Lockdown Mode, though most people won’t want to turn it on. Apple says Lockdown Mode will turn off several features that are especially vulnerable to security flaws, and that it’s mostly meant for people who think they may be targeted by expert hackers, such as the ones hired by governments. If that’s you, the feature should be available when iOS 16 and macOS Ventura release. (Plus, wow, you sound very cool. Or very scary.)

The rest of us, though, can just make sure to keep updating our devices whenever new security patches come out — no matter how annoying that is or how frequently it happens.



Source: The Verge

Popular posts from this blog

Yandex spins out self-driving car unit from its Uber JV, invests $150M into newco

Self-driving cars are still many years away from becoming a ubiquitous reality, but today one of the bigger efforts to build and develop them is taking a significant step out as part of its strategy to be at the forefront for when they do. Yandex — the publicly-traded Russian tech giant that started as a search engine but has expanded into a number of other, related areas (similar to US counterpart Google) — today announced that it is spinning out its self-driving car unit from MLU BV — a ride-hailing and food delivery joint venture it operates in partnership with Uber. The move comes amid reports that Yandex and Uber were eyeing up an IPO for MLU  last year. At the time, the JV was estimated to be valued at around $7.7 billion. It’s not clear how those plans will have been impacted in recent months, with COVID-19 putting huge pressure on ride-hailing and food-delivery businesses globally, and IPOs generally down compared to a year ago. In that context, spinning out the unit could

Slack’s new integration deal with AWS could also be about tweaking Microsoft

Slack and Amazon announced a big integration late yesterday afternoon. As part of the deal, Slack will use Amazon Chime for its call feature, while reiterating its commitment to use AWS as its preferred cloud provider to run its infrastructure. At the same time, AWS has agreed to use Slack for internal communications. Make no mistake, this is a big deal as the SaaS communications tool increases its ties with AWS, but this agreement could also be about slighting Microsoft and its rival Teams product by making a deal with a cloud rival. In the past Slack CEO Stewart Butterfield has had choice words for Microsoft saying the Redmond technology giant sees his company as an “existential threat.” Whether that’s true or not — Teams is but one piece of a huge technology company — it’s impossible not to look at the deal in this context. Aligning more deeply with AWS sends a message to Microsoft, whose Azure infrastructure services compete with AWS. Butterfield didn’t say that of course

Xbox One S vs. Xbox One X: Which should you buy?

http://bit.ly/2v1agl5 We live and breathe tech, and also gaming, with every member of Windows Central rocking either an Xbox One console or PC gaming rig. We've compared and contrasted every iteration of Xbox One to bring you this guide. Xbox One X Raw 4K power From $299 at Amazon Pros Has thousands of games 4K media apps, Blu-ray discs, and games IR blaster for TV controls, Amazon Echo for voice controls Improved HDD speeds for faster loading times Cons More expensive at around $500 RRP Requires a 4K TV to get the most out of it The Xbox One X is the world's most powerful games console, running the latest games with the crispest, detailed visuals on TV sets with 4K HDR support. Xbox One S More affordable From $226 at Amazon Pros Has thousands of games 4K media apps and Blu-ray IR blaster for TV controls, Amazon Echo for voice controls More affordable at around $300 RRP Cons No 4K games Games run worse, even on a 1080p TV The Xbox One S i

Elon Musk sends yet another notice trying to terminate the Twitter deal

Kristen Radtke / The Verge; Getty Images Elon Musk has sent a third letter to Twitter attempting to terminate his $44 billion acquisition of the company . Musk’s legal team cited Twitter’s multimillion dollar severance payment to former security chief and whistleblower Peiter Zatko as a violation of the merger agreement and a reason to end the deal. The letter, dated September 9th, was sent to Twitter’s chief legal officer Vijaya Gadde, and was included in a filing Twitter made with the SEC on Friday (which you can read at the bottom of this article). Last month, Zatko made headlines by accusing Twitter of misleading investors about the number of bots on the service, failing to delete users’ data, and having poor security practices, among other things. Musk jumped on the accusations, citing them in his second termination letter and subpoenaing Zatko to testify in the lawsuit. Zatko was set to be deposed on Friday. Elon Musk sent his first letter of termination in July , say