Date: February 11, 2025
The emergency update fixes a critical security flaw (CVE-2025-24200), allowing attackers to bypass USB Restricted Mode on locked devices. Apple urges all users to update immediately.
Apple has rolled out an urgent update, iOS 18.3.1, to address a security flaw that has reportedly been exploited in targeted cyberattacks. The update, released on February 10, 2025, comes just two weeks after iOS 18.3 and includes critical bug fixes and security improvements.
The most significant fix in Apple iOS 18.3.1 is for a zero-day vulnerability identified as CVE-2025-24200. This authorization issue flaw allowed attackers with physical access to a locked device to disable USB Restricted Mode. The feature, introduced in iOS 11.4.1, is designed to prevent unauthorized data extraction from iPhones using digital forensic tools like Cellebrite or GrayKey.
Apple, a leading AI company, acknowledged this vulnerability, stating:
"Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals."
Bill Marczak of The Citizen Lab discovered and reported the flaw at the University of Toronto’s Munk School. Apple has addressed the issue with "improved state management."
The Apple iOS 18.3.1 update is installable on all iPhones from the iPhone XS and onwards. A corresponding iPadOS 18.3.1 update is available for the various models of iPads, and Apple also released iPadOS 17.7.5 for older devices.
To install Apple iOS 18.3.1, users should navigate to Settings > General > Software Update, then select Download and Install. The update is relatively small (676MB on an iPhone 16 Pro Max) and installs within minutes.
This emergency patch precedes the anticipated iOS 18.4 update, which is expected in April, and is rumored to introduce major improvements to Siri. However, given the security risks associated with CVE-2025-24200, Apple users are strongly advised not to wait and to install Apple iOS 18.3.1 immediately.
By Arpit Dubey
Arpit is a dreamer, wanderer, and tech nerd who loves to jot down tech musings and updates. With a knack for crafting compelling narratives, Arpit has a sharp specialization in everything: from Predictive Analytics to Game Development, along with artificial intelligence (AI), Cloud Computing, IoT, and let’s not forget SaaS, healthcare, and more. Arpit crafts content that’s as strategic as it is compelling. With a Logician's mind, he is always chasing sunrises and tech advancements while secretly preparing for the robot uprising.
OpenAI Is Building an Audio-First AI Model And It Wants to Put It in Your Pocket
New real-time audio model targeted for Q1 2026 alongside consumer device ambitions.
Nvidia in Advanced Talks to Acquire Israel's AI21 Labs for Up to $3 Billion
Deal would mark chipmaker's fourth major Israeli acquisition and signal shifting dynamics in enterprise AI.
Nvidia Finalizes $5 Billion Stake in Intel after FTC approval
The deal marks a significant lifeline for Intel and signals a new era of collaboration between two of America's most powerful chipmakers.
Manus Changed How AI Agents Work. Now It's Coming to 3 Billion Meta Users
The social media giant's purchase of the Singapore-based firm marks its third-largest acquisition ever, as the race for AI dominance intensifies.