Urgent warning issued to iPhone users to turn off AirPlay
Share this @internewscast.com

Apple’s AirPlay feature is beloved by many users — but it can leave you vulnerable to hackers.

Experts at the cybersecurity company Oligo identified significant security vulnerabilities in Apple AirPlay, which enable attackers to take control of connected devices sharing the same Wi-Fi network.

AirPlay is a feature that lets users effortlessly stream audio, video, or images from one Apple device to another, or to non-Apple devices that support the protocol.

According to Wired, these 23 security issues, collectively called “AirBorne,” were discovered in both Apple’s AirPlay protocol and the AirPlay Software Development Kit (SDK) utilized by third-party manufacturers to ensure their devices are compatible with AirPlay.

Researchers demonstrated in a video how vulnerabilities can be exposed to hackers by accessing an AirPlay-enabled Bose speaker on the same network and remotely executing a Remote Code Execution (RCE) attack, showing the “AirBorne” logo on the speaker’s display.

They claimed that hackers realistically can use a similar strategy to gain access to devices with microphones for espionage.

Oligo CTO Gal Elbaz told Wired that the total number of exposed devices could potentially be in the millions.

“Because AirPlay is supported in such a wide variety of devices, there are a lot that will take years to patch — or they will never be patched,” Elbaz explained. “And it’s all because of vulnerabilities in one piece of software that affects everything.”


Dangerous Hooded Hacker Breaks into Government Data Servers and Infects Their System with a  Virus. His Hideout Place has Dark Atmosphere, Multiple Displays, Cables Everywhere.
Oligo CTO Gal Elbaz told Wired that the total number of exposed devices could potentially be in the millions. Gorodenkoff – stock.adobe.com

The risks were reported to Apple in the late fall and winter of last year, and Oligo worked with the tech giant for months on fixes before publishing their findings Tuesday.

Apple devices with iOS 18.4, iPadOS 18.4, macOS Ventura 13.7.5, macOS Sonoma 14.7.5, macOS Sequoia 15.4 and visionOS 2.4 had fixes rolled out on March 31.

However, third-party devices that support AirPlay protocol remain vulnerable. The researchers said that manufacturers would need to roll out updates for users to install themselves in order to avoid being exposed to hackers.


Koh Samui, Thailand - March 26, 2018: Man hand holding iPhone X with home screen Control Center. iPhone 10 was created and developed by the Apple inc.
AirPlay allows users to seamlessly stream audio, video or photos from their Apple device to another device. DenPhoto – stock.adobe.com

Apple told Wired that it created patches available for these third-party devices, but it emphasized that there are “limitations” to the attacks that would be possible on AirPlay-enabled devices due to the bugs.

CarPlay-equipped systems are also at risk, the researchers noted, since hackers can carry out an RCE attack if they are near the unit and “the device has a default, predictable, or known Wi-Fi hotspot password.”

According to the report, there are several ways to help protect your device from the threat of hackers:

  • ‍Update your devices: Researchers stressed that devices and other machines that support AirPlay need to be updated immediately to the latest software versions to mitigate potential security risks.
  • Disable AirPlay Receiver: Oligo recommends fully disabling the AirPlay feature when not in use.
  • Only AirPlay to trusted devices: Limit AirPlay communication and stream content to only trusted devices.
  • Restrict AirPlay Settings: Go to Settings > AirPlay & Continuity (or AirPlay & Handoff) and select Current User for the “Allow AirPlay for” option. “While this does not prevent all of the issues mentioned in the report, it does reduce the protocol’s attack surface,” researchers noted.
  • Disable on public Wi-Fi: It’s best to avoid enabling or using AirPlay when on a public Wi-Fi network.

Share this @internewscast.com
You May Also Like
Louvre Museum in Paris hikes ticket prices for most non-European tourists | What to know

Louvre Museum Increases Ticket Prices for Non-European Tourists: Essential Information for Visitors

In Paris, the sight of long queues snaking beneath I.M. Pei’s iconic…
Secret room to be built at Chinese embassy near cable lines, sparking widespread espionage fears

Chinese Embassy’s New Construction Near Cable Lines Raises Espionage Concerns

Unveiled construction plans for China’s upcoming super embassy in London have sparked…
Suspected Venezuelan gangster in Portland CBP attack tied to shooting at apartment complex: police

Venezuelan Gangster’s Oregon Rampage: From CBP Assault to Apartment Complex Shooting

A Venezuelan national, suspected of gang affiliations, who was shot by U.S.…
'Thirtysomething' actor faces child sexual abuse charges in New Mexico after turning himself in

Former ‘Thirtysomething’ Actor Surrenders to New Mexico Authorities on Child Sexual Abuse Charges

The Albuquerque Police Department has issued an arrest warrant for Timothy Busfield,…
'We couldn't believe it': Police investigating smash-and-grab at Grumpy’s in Neptune Beach

Neptune Beach’s Grumpy’s Diner Targeted in Daring Smash-and-Grab Heist: Police Launch Investigation

Authorities are currently investigating a break-in at Grumpy’s Restaurant located in Neptune…
Chicago crime: Surveillance video shows 1 of 7 burglaries near CTA Red Line stops in Edgewater, Uptown and West Rogers Park

Wave of Burglaries Near CTA Red Line: Exclusive Surveillance Footage Unveiled in Chicago’s Edgewater, Uptown, and West Rogers Park

In the heart of Chicago’s Edgewater neighborhood, a local eatery recently fell…
SEE IT: Police guard Chicago home of surgeon ex charged in Ohio dentist double murder

Police Stand Guard at Chicago Home Linked to Ohio Dentist Double Murder Case

CHICAGO — The entrance to a Chicago apartment, once home to an…
Some personnel at key US base in Qatar advised to evacuate as Iran official brings up earlier attack

Personnel at Strategic US Base in Qatar Urged to Evacuate Following Remarks by Iranian Official on Past Attack

Personnel at a significant U.S. military installation in Qatar have been instructed…
Passengers baffled and confused after screams burst from beneath taxiing Air Canada plane

Unexplained Screams Under Air Canada Plane Leave Passengers Stunned During Taxiing

Last month, passengers aboard a taxiing aircraft faced a startling moment when…
Camden County High School appoints new head football coach

Camden County High School Welcomes New Head Football Coach to Lead Wildcats to Victory

Camden County High School has appointed Tucker Pruitt as the new head…
Trump envoy reportedly meets with exiled Iranian prince as regime faces protests

Trump Envoy Engages with Exiled Iranian Prince Amid Intensifying Protests Against Regime

In a weekend marked by secrecy, White House envoy Steve Witkoff is…
MrBeast claims he has negative money despite billionaire status

MrBeast asserts financial losses despite being recognized as a billionaire

Is MrBeast truly facing financial difficulties? In a recent conversation with the…