January 31, 2025

Apple Zero-Day Vulnerability: Urgent Security Alert for all Apple Devices

by: Align

Details of the Vulnerability:

In our ongoing commitment to safeguarding your digital assets, we would like to inform you of critical security vulnerabilities recently identified across all Apple devices. The vulnerability assigned the identifier CVE-2025-24107 is a permissions vulnerability in Apple's operating systems that could allow a malicious application to gain root privileges.

This issue has been addressed with additional restrictions in macOS Sequoia 15.3, tvOS 18.3, watchOS 11.3, iOS 18.3, and iPadOS 18.3. 

To ensure the security of your devices and data, we strongly recommend that you take immediate action to upgrade your Apple devices to the latest software versions. 


What You Need to Do: 

  • Update all Apple devices immediately:  Ensure all macOS, iOS, iPadOS, watchOS, and tvOS devices are updated to the latest versions that include the security patch.
  • Remain Vigilant: While these updates address the specific vulnerabilities, it is essential to stay informed about future threats. We recommend enabling automatic updates on your devices whenever possible to ensure you receive the latest security patches promptly.
  • Report Suspicious Activity: If you suspect any unusual activity on your device, such as unauthorized access attempts or unexpected behavior, please report it to our IT support team immediately

How We Can Assist You:

Our team is available to help you assess and secure your systems. If you require assistance with patching or evaluating your security posture, please contact us at help@align.com.

 

Additional Information and Cybersecurity Guidance: 

  • To learn more, please click here.
  • Familiarize your team with our Service Desk's contact information: 
  • Explore more information on Align Cybersecurity 

 

Do you have further other cybersecurity concerns? 

If so, we advise you to contact the Align Managed Services team at help@align.com or via phone at +1 855-IT-ALIGN (1-855-482-5446)

Thank you,

The Align Team

Account Management Team email: AccountMGMT@align.com
Align Managed Services Team email: help@align.com 
Cyber Team email - cyber@align.com
Alex Bazay, CISO - abazay@align.com
Dan Lyons, Sales and Business Development - dlyons@align.com
Phone: 1 855-IT-ALIGN (1-855-482-5446)

Continue Reading

Related Articles

★★★★★

“Align is our trusted provider for all our Managed Services and cybersecurity needs. They provide us best-in-class IT services that not only help drive productivity and growth, but ensure we meet both current and evolving compliance and security requirements with ease. As consultants to financial advisors, trust and reliability are indispensable to our operations, which is why we never hesitate to refer Align to our very own client base. Align isn’t just our partner, they are an extension of our team. We look forward to entrusting them with our IT infrastructure for years to come.”

Ed Fasano - Experienced Advisory Consultants LLC