Urgent warning issued to iPhone users to turn off AirPlay

Apple’s AirPlay feature is beloved by many users — but it can leave you vulnerable to hackers.

Experts at the cybersecurity company Oligo identified significant security vulnerabilities in Apple AirPlay, which enable attackers to take control of connected devices sharing the same Wi-Fi network.

AirPlay is a feature that lets users effortlessly stream audio, video, or images from one Apple device to another, or to non-Apple devices that support the protocol.

According to Wired, these 23 security issues, collectively called “AirBorne,” were discovered in both Apple’s AirPlay protocol and the AirPlay Software Development Kit (SDK) utilized by third-party manufacturers to ensure their devices are compatible with AirPlay.

Researchers demonstrated in a video how vulnerabilities can be exposed to hackers by accessing an AirPlay-enabled Bose speaker on the same network and remotely executing a Remote Code Execution (RCE) attack, showing the “AirBorne” logo on the speaker’s display.

They claimed that hackers realistically can use a similar strategy to gain access to devices with microphones for espionage.

Oligo CTO Gal Elbaz told Wired that the total number of exposed devices could potentially be in the millions.

“Because AirPlay is supported in such a wide variety of devices, there are a lot that will take years to patch — or they will never be patched,” Elbaz explained. “And it’s all because of vulnerabilities in one piece of software that affects everything.”


Dangerous Hooded Hacker Breaks into Government Data Servers and Infects Their System with a  Virus. His Hideout Place has Dark Atmosphere, Multiple Displays, Cables Everywhere.
Oligo CTO Gal Elbaz told Wired that the total number of exposed devices could potentially be in the millions. Gorodenkoff – stock.adobe.com

The risks were reported to Apple in the late fall and winter of last year, and Oligo worked with the tech giant for months on fixes before publishing their findings Tuesday.

Apple devices with iOS 18.4, iPadOS 18.4, macOS Ventura 13.7.5, macOS Sonoma 14.7.5, macOS Sequoia 15.4 and visionOS 2.4 had fixes rolled out on March 31.

However, third-party devices that support AirPlay protocol remain vulnerable. The researchers said that manufacturers would need to roll out updates for users to install themselves in order to avoid being exposed to hackers.


Koh Samui, Thailand - March 26, 2018: Man hand holding iPhone X with home screen Control Center. iPhone 10 was created and developed by the Apple inc.
AirPlay allows users to seamlessly stream audio, video or photos from their Apple device to another device. DenPhoto – stock.adobe.com

Apple told Wired that it created patches available for these third-party devices, but it emphasized that there are “limitations” to the attacks that would be possible on AirPlay-enabled devices due to the bugs.

CarPlay-equipped systems are also at risk, the researchers noted, since hackers can carry out an RCE attack if they are near the unit and “the device has a default, predictable, or known Wi-Fi hotspot password.”

According to the report, there are several ways to help protect your device from the threat of hackers:

  • ‍Update your devices: Researchers stressed that devices and other machines that support AirPlay need to be updated immediately to the latest software versions to mitigate potential security risks.
  • Disable AirPlay Receiver: Oligo recommends fully disabling the AirPlay feature when not in use.
  • Only AirPlay to trusted devices: Limit AirPlay communication and stream content to only trusted devices.
  • Restrict AirPlay Settings: Go to Settings > AirPlay & Continuity (or AirPlay & Handoff) and select Current User for the “Allow AirPlay for” option. “While this does not prevent all of the issues mentioned in the report, it does reduce the protocol’s attack surface,” researchers noted.
  • Disable on public Wi-Fi: It’s best to avoid enabling or using AirPlay when on a public Wi-Fi network.

You May Also Like
Barrington woman receiving thousands in property tax refunds sent out by Cook County Treasurer's Office after year-long delay

Cook County Finally Delivers: Barrington Resident Receives Long-Awaited Property Tax Refunds Worth Thousands

CHICAGO (WLS) — The ABC7 I-Team has revealed new developments in their…
Steve Hilton, Tom Steyer tied despite billionaire's $200M in campaign spending

Billionaire Tom Steyer’s $200M Campaign Fails to Boost Lead Over Steve Hilton

In the lead-up to Tuesday’s primary election, an exclusive California Post poll…
Donna Brazile refuses to discuss Jill Biden's stroke admission from 2024 debate

Donna Brazile Remains Silent on Jill Biden’s Health Revelation During 2024 Debate

Donna Brazile, who once led the Democratic National Committee as acting chair,…
Mother, boyfriend allegedly abandoned blindfolded young sons in remote forest as part of 'game': reports

Shocking Allegations: Mother and Boyfriend Accused of Abandoning Blindfolded Sons in Remote Forest ‘Game

A harrowing incident unfolded in Portugal, where a French mother and her…
Death toll from U.S. strikes on alleged drug boats climbs above 200 with latest attack

U.S. Strikes Targeting Suspected Drug Boats Result in Over 200 Fatalities

The United States military conducted another strike on Friday targeting a vessel…
RFK Jr's new interim surgeon general a dancing phenom and former TV doc

RFK Jr. Appoints Renowned Dancing Physician and Former TV Doctor as Interim Surgeon General

Be warned: Dancing might just lead to unexpected fun, according to the…
Rep. Frederica Wilson, 83, will retire from Congress

Rep. Frederica Wilson Announces Retirement from Congress at Age 83

WASHINGTON — In a recent interview with the Miami Herald, Rep. Frederica…
Trump signs order directing CDC to align with assessment calling for fewer childhood vaccines

Trump Directs CDC to Reevaluate Childhood Vaccine Guidelines in New Executive Order

On Friday, President Trump enacted an executive order instructing the U.S. Centers…
NYC killer convicted of gunning down ex-girlfriend while she walked with their baby

NYC Man Found Guilty of Murdering Ex-Girlfriend During Tragic Street Attack with Baby Present

A ruthless Brooklyn man has been found guilty of the cold-blooded murder…
Marcia Lucas, Oscar-winning 'Star Wars' editor and former wife of George Lucas, dies at 80

Oscar-Winning ‘Star Wars’ Editor and Former Spouse of George Lucas, Marcia Lucas, Passes Away at 80

For women seeking significant creative roles in Hollywood, the position of editor…
Eight riders left dangling atop 100-foot roller coaster for over three hours at Texas amusement park

Thrilling Rescue: Roller Coaster Riders Stranded 100 Feet High for Hours at Texas Park

In a dramatic turn of events at a Texas amusement park, eight…
FBI and Texas authorities arrest 276 suspected child predators, rescue 89 children in sweeping operation

Massive Child Predator Bust: FBI and Texas Authorities Rescue 89 Children and Arrest 276 Suspects

A collaborative effort between the FBI and Texas law enforcement agencies has…