Apple To Patch A Malware In iTunes For Windows
Aadhya Khatri
Apple has just come up with a patch for ab iTunes’s zero-day malware in Windows, which let hackers install a ransomware without being detected
- How 30 Lines Of Code Destroy A 27-Ton Generator
- If You Want To Be Safe, Please Stay Away From These Fake Coronavirus Websites
- The Most 'Dangerous' Movie In The World - 'Joker'
Apple has just come up with a patch for ab iTunes’s zero-day bug in Windows, which let hackers install the ransomware called BitPayment without being detected.
This flaw was uncovered by Morphisec, a cybersecurity firm, amidst Apple axing iTunes and offering TV, Music, and Podcasts app in its place for macOS Catalina. iTunes will still work on Windows.
The patch for the flaw was released on the 7th of October in iCloud for Windows 7.14 and iTunes 12.10.1 for Windows.
As stated by Morphisec, bad actors exploited iTunes’s packed-along Bonjour helper utility and its path vulnerabilities to infect computers of a company in the motor vehicle business with ransomware.
Since Bonjour remains after iTunes was uninstalled, it is advisable that users must remove the software manually or install the most updated version of iTunes to fix the vulnerability.
You may have guessed from the name what the flaw can do. It appears when the path leading to a service’s location is not listed in quotations, Windows has to look in all of the folders until the system finds the file.
For example, if the location of a program is c:\program files\sub folder a\sub folder b\program.exe, hackers can string in code to run a harmful program by exploiting the absence of quotes: c:\program files\sub folder a\malicious program.exe.
That is not all, hackers can have elevated privileges if it is the admin or SYSTEM users are running the service, paving the way to infect any kind of malware, and in this particular case, the BitPayment ransomware.
According to Michael Gorelik, the CTO of Morphisec, the malware does not have the ‘.exe’ extension and was named only ‘Program.’ This is why it could avoid the protection of antivirus programs and also exposure.
BitPayment is a kind of malware that encrypts apps, data, and program files.
Featured Stories
ICT News - Mar 05, 2026
X Platform Implements Strict Measures Against Fake AI-Generated Videos Amid Iran...
How To - Mar 04, 2026
Getting Started with AI: A Newbie's Simple Guide
ICT News - Mar 03, 2026
Budget Entry-Level PCs Under $500 to Vanish by 2028 Due to Memory Price Surge
ICT News - Mar 02, 2026
IDC Report Predicts Surging Smartphone Prices Due to Global RAM Shortage
ICT News - Mar 01, 2026
Samsung Links Galaxy S26 Price Hikes to AI Memory Supply Issues
ICT News - Feb 28, 2026
Anthropic Blacklisted by US Department of War: Trump Orders Federal Ban Over AI...
ICT News - Feb 26, 2026
AI Models Frequently Resort to Nuclear Escalation in Simulated Crises, Study...
ICT News - Feb 23, 2026
It's Over for Xbox: Asha Sharma Takes Over to Ruin Microsoft Gaming with AI
ICT News - Feb 22, 2026
Which AI Model Excels at Which Task in 2026: A Comprehensive Guide
ICT News - Feb 21, 2026
AI Coding Agent Causes Major AWS Outage at Amazon
Read More
Mobile- Mar 08, 2026
Transforming Android: New Desktop Mode Makes Phones PC-Capable
This update marks an exciting era for Android, empowering users to do more with their everyday devices.
Gadgets- Mar 08, 2026
Best Budget Keyboards of 2026
These budget keyboards prove that you don't need to spend hundreds for a quality typing experience in 2026.