Software

Security researchers share PoC for CVE-2025-31200, a security vulnerability patched in iOS 18.4.1

iPhone hacked matrix.

In iOS & iPadOS 18.4.1, Apple patched CVE-2025-31200, which is a CoreAudio security vulnerability patch that could have enabled arbitrary code execution in the userspace process responsible for processing the malicious file. Apple was made aware of instances in which this vulnerability may have been used against specifically targeted individuals and consequently patched it with improved bounds checking.

PureKFD device toolbox version 5.3 released with improvements for KFD exploit users

PureKFD.

PureKFD is an iOS toolbox for non-jailbroken devices that supports various versions of iOS & iPadOS ranging from 14.0 through 18.0/18.1 beta 4. While it previously only supported firmware versions that were susceptible to the Kernel File Descriptor (KFD) exploit, that all changed recently when the toolbox added support for the more recent SparseRestore exploit starting with version 6.

Apple officially rejects Fortnite mobile App Store submission as Epic Games pulls game from platform worldwide

Fortnite V-Bucks.

Just last night we reported on Epic Games CEO Tim Sweeney’s statement that Apple had neither approved nor rejected the company’s popular Fortnite mobile game for the iOS & iPadOS App Store after a resubmission following a United States-based court order that ruled Apple needed to allow third-party payment options in apps rather than going through the App Store and collecting the 15-30% Apple tax for every transaction.