Apple Products Vulnerable to Zero-Day Attack by FORCEDENTRIA: Patch Now! – Naked security

You know what we’re going to say, so we’ll say it right away.

Pasted soon, pasted often.

Canadian privacy and cybersecurity activist group The Citizen Lab has just announced a zero-day security hole in Apple’s Apple, iPad and Macintosh operating systems.

They have given the nickname to the attack FORCEDENTRY, for fairly obvious reasons, although its official designation is CVE-2021-30860.

Citizen Lab has attributed the vulnerability and code that exploits it to the controversial device monitoring company NSO Group, already known by its so-called Pegasus product line similar to spyware.

According to Citizen Lab, this exploit is based on breast-trapped PDF files and was seen in the wild when a Saudi activist handed over his phone for analysis after suspecting that some spyware had been implanted in the device.

The Citizen Lab report coincides with Apple’s own security bulletin HT21807, which accredits Citizen Lab for reporting the hole and simply says:

Processing a maliciously crafted PDF can result in arbitrary code execution. Apple is aware of a report that could have actively exploited this issue. […] An integer overflow with improved input validation was addressed.