Scientists Discover Symbolic Link Vulnerability Permitting TCC Bypass in iOS and macOS
Information has been revealed regarding a recently fixed security loophole in Apple’s iOS and macOS which, if effectively used, could evade the Transparency, Consent, and Control (TCC) structure and lead to unauthorized entry to private data. The vulnerability, identified as CVE-2024-44131 (CVSS score: 5.3), is located in the FileProvider element, according to Apple, and has been resolved with enhanced security measures.
