Security

Security researchers share PoC for CVE-2025-31200, a security vulnerability patched in iOS 18.4.1

iPhone hacked matrix.

In iOS & iPadOS 18.4.1, Apple patched CVE-2025-31200, which is a CoreAudio security vulnerability patch that could have enabled arbitrary code execution in the userspace process responsible for processing the malicious file. Apple was made aware of instances in which this vulnerability may have been used against specifically targeted individuals and consequently patched it with improved bounds checking.

Technical analysis by Verichains confirms sandbox escape use by certain banking apps to detect TrollStore, jailbreak apps

iPhone hacked matrix.

Just yesterday, we reported on one of TrollStore perma-signing utility developer Lars Fröder’s posts on Bluesky sharing that some banking apps available in Apple’s App Store as of this writing utilize a 0-day sandbox escape technique to find out if certain unfavorable apps or services are installed on the end user’s device.