Apple To Patch A Malware In iTunes For Windows
Aadhya Khatri
Apple has just come up with a patch for ab iTunes’s zero-day malware in Windows, which let hackers install a ransomware without being detected
- How 30 Lines Of Code Destroy A 27-Ton Generator
- If You Want To Be Safe, Please Stay Away From These Fake Coronavirus Websites
- The Most 'Dangerous' Movie In The World - 'Joker'
Apple has just come up with a patch for ab iTunes’s zero-day bug in Windows, which let hackers install the ransomware called BitPayment without being detected.
This flaw was uncovered by Morphisec, a cybersecurity firm, amidst Apple axing iTunes and offering TV, Music, and Podcasts app in its place for macOS Catalina. iTunes will still work on Windows.
The patch for the flaw was released on the 7th of October in iCloud for Windows 7.14 and iTunes 12.10.1 for Windows.
As stated by Morphisec, bad actors exploited iTunes’s packed-along Bonjour helper utility and its path vulnerabilities to infect computers of a company in the motor vehicle business with ransomware.
Since Bonjour remains after iTunes was uninstalled, it is advisable that users must remove the software manually or install the most updated version of iTunes to fix the vulnerability.
You may have guessed from the name what the flaw can do. It appears when the path leading to a service’s location is not listed in quotations, Windows has to look in all of the folders until the system finds the file.
For example, if the location of a program is c:\program files\sub folder a\sub folder b\program.exe, hackers can string in code to run a harmful program by exploiting the absence of quotes: c:\program files\sub folder a\malicious program.exe.
That is not all, hackers can have elevated privileges if it is the admin or SYSTEM users are running the service, paving the way to infect any kind of malware, and in this particular case, the BitPayment ransomware.
According to Michael Gorelik, the CTO of Morphisec, the malware does not have the ‘.exe’ extension and was named only ‘Program.’ This is why it could avoid the protection of antivirus programs and also exposure.
BitPayment is a kind of malware that encrypts apps, data, and program files.
Featured Stories
ICT News - May 29, 2026
New Glenn Rocket Explodes in Massive Fireball During Static Fire Test at Cape...
Mobile - May 24, 2026
iOS 27 Preview: Apple Delivers Its Most Intelligent Siri Yet Alongside Fresh AI...
ICT News - May 08, 2026
Elon Musk Highlights Neuralink Breakthrough with New Surgical Robot for Brain...
ICT News - Apr 13, 2026
DDR4 RAM Prices Finally Fall After Soaring More Than 2,200 Percent
ICT News - Apr 06, 2026
Artemis II Crew Enters Moon's Gravitational Sphere on Historic Day 5
ICT News - Mar 31, 2026
DDR5 RAM Prices Finally Easing: Relief for PC Builders in 2026
ICT News - Mar 29, 2026
FTC Takes Action Against Debanking Practices by Major Financial Firms
ICT News - Mar 27, 2026
Palantir CTO Identifies Iran Conflict as First Large-Scale AI-Driven War
ICT News - Mar 24, 2026
OpenAI on the Brink: Major Setbacks Signal the Bursting of the AI Bubble
ICT News - Mar 20, 2026
Top 10 Most Popular Social Media Sites Based on User Count in 2026
Read More
ICT News- May 29, 2026
New Glenn Rocket Explodes in Massive Fireball During Static Fire Test at Cape Canaveral
The event underscores the high-stakes nature of rocket development, where even advanced systems can encounter unexpected challenges during ground testing.
Mobile- May 30, 2026
Xiaomi 17T Pro Excels as Telephoto Champion with Monster Battery Life
Xiaomi just dropped the 17T Pro and it immediately stands out in the crowded Android market.