Serious vulnerability requiring immediate updates to Apple devices (Feb 2023)

What has happened?

Apple has announced a new software vulnerability affecting iPhones, iPads and Macs. Hackers can potentially exploit this vulnerability to insert malware or spyware or run malicious commands, when users view malicious web content via the browser or apps. This can further lead to data loss or leakage.

Which Apple devices are affected?

Below is the list of the affected Apple devices, and the corresponding software update that fixes the vulnerability.

Affected Device Latest update available
iPhone 8 and later iOS 16.3.1
iPad Pro (all models) iPadOS 16.3.3
iPad Air 3rd generation
iPad 5th generation
iPad mini 5th generation and later
Macs running macOS Ventura macOS Ventura 13.2.1
Macs running macOS Big Sur and macOS Monterey Safari 16.3
What do I need to do?

If you have an affected device, update to the latest software version immediately as stated above. Please refer to the following links for more information on how to do so.

Device Type How to update
iPhone/iPad https://support.apple.com/en-us/HT204204
macOS https://support.apple.com/en-sg/HT201541
Safari https://support.apple.com/en-us/HT204416

You are also advised to enable automatic software updates to ensure that you are protected from security vulnerabilities continually.

For more information

Please refer to the official advisory from SingCERT: https://www.csa.gov.sg/en/singcert/Alerts/al-2023-017

Please contact NUS IT Care at 6516 2080 or ITCare@nus.edu.sg should you have any queries.

 

Let’s all work together to keep NUS secure, bIT by bIT.