Apple Fixes Critical Zero-Day Flaw Threatening Crypto Wallets
Apple has rolled out emergency security updates for iOS, iPadOS, and macOS to patch a zero-day vulnerability (CVE-2025-43300) in its ImageIO framework. Actively exploited by sophisticated attackers, the flaw allows malicious image files to execute code that compromises devices—posing acute risks for cryptocurrency holders.
The exploit targets Apple's image processing system, enabling attackers to exfiltrate private keys and authentication credentials when victims open rigged image files. For crypto users, this creates a direct theft vector—compromised devices could lead to drained wallets without requiring transaction signatures.
While no specific coins were named in Apple's advisory, the vulnerability impacts all wallet software on affected devices. The patch comes as blockchain security firms report increased targeting of mobile wallet users through similar zero-click exploits.