Three AirDrop vulnerabilities discovered, with Apple working on a full fix

Three AirDrop vulnerabilities have been discovered that allow proximity attackers to remotely disable critical Apple services (AirDrop, AirPlay, Handoff, Universal Clipboard, and Continuity Camera) with a simple request loop, requiring no authentication or user interaction on devices set to "Everyone" mode. While no data theft is possible, the attack reflects a systemic engineering challenge in pre-authentication proximity protocols that also affect Android's Quick Share, creating a persistent denial-of-service risk for enterprise environments relying on Apple's Continuity features. Apple has patched one vulnerability with two others still in coordinated disclosure, necessitating immediate security updates and a review of enterprise configurations once patches are released.

Ben Lovejoy9to5Mac2 min read
Read full article
Three AirDrop vulnerabilities discovered, with Apple working on a full fix
Three AirDrop vulnerabilities have been discovered by security researchers, affecting both iPhone and Mac, with similar ones found in Android’s Quick Share. An attacker could easily exploit the vulnerabilities to cause AirDrop, AirPlay, Handoff, Universal Clipboard, and Continuity Camera to crash and remain unavailable for as long as the attack continues …