Dataconomy
  • News
    • Artificial Intelligence
    • Cybersecurity
    • DeFi & Blockchain
    • Finance
    • Gaming
    • Startups
    • Tech
  • Industry
  • Research
  • Resources
    • Articles
    • Guides
    • Case Studies
    • Whitepapers
    • AI Models Leaderboard
  • AI toolsNEW
  • Newsletter
  • + More
    • Glossary
    • Conversations
    • Events
    • About
      • Who we are
      • Contact
      • Imprint
      • Legal & Privacy
      • Partner With Us
Subscribe
No Result
View All Result
  • AI
  • Tech
  • Cybersecurity
  • Finance
  • DeFi & Blockchain
  • Startups
  • Gaming
Dataconomy
  • News
    • Artificial Intelligence
    • Cybersecurity
    • DeFi & Blockchain
    • Finance
    • Gaming
    • Startups
    • Tech
  • Industry
  • Research
  • Resources
    • Articles
    • Guides
    • Case Studies
    • Whitepapers
    • AI Models Leaderboard
  • AI toolsNEW
  • Newsletter
  • + More
    • Glossary
    • Conversations
    • Events
    • About
      • Who we are
      • Contact
      • Imprint
      • Legal & Privacy
      • Partner With Us
Subscribe
No Result
View All Result
Dataconomy
No Result
View All Result

A critical flaw in Apple Podcasts allows automatic app launches

The malicious activity was replicated by a macOS security expert showing that visiting a simple website is enough to trigger the app to open.

byKerem Gülen
December 2, 2025
in Cybersecurity, News
Home News Cybersecurity
Share on FacebookShare on TwitterShare on LinkedInShare on WhatsAppShare on e-mail
Google Preferred Source

Black-hat hackers are exploiting podcast applications, specifically Apple Podcasts, as a new attack vector, according to recent findings by Joseph Cox of 404 Media. This vulnerability allows for unsolicited app launches and potentially further system compromises.

Over several months, Apple Podcast applications on both an iPhone and a Mac exhibited unusual behavior. Podcasts, predominantly religious in nature, launched automatically without user prompting or subscription. The metadata associated with these unsolicited podcasts contained suspicious elements, including personal email addresses, multilingual faith-related phrases, and concerning code sequences.

Patrick Wardle, a macOS security expert and founder of Objective-See, stated, “The most concerning behavior is that the app can be launched automatically with a podcast of an attacker’s choosing. I have replicated similar behavior, albeit via a website: simply visiting a website is enough to trigger Podcasts to open (and a load a podcast of the attacker’s choosing), and unlike other external app launches on macOS (e.g., Zoom), no prompt or user approval is required.”

Stay Ahead of the Curve!

Don't miss out on the latest insights, trends, and analysis in the world of data, technology, and startups. Subscribe to our newsletter and get exclusive content delivered straight to your inbox.

This automated launch capability raises concerns about potential unauthorized access to device peripherals. If an application like Zoom, which controls camera functions, could be activated similarly without user intervention, it suggests a pathway for malicious podcasts to potentially activate webcams or microphones unknowingly. Users may consider alternative podcast applications, such as Pocket Casts, to mitigate this risk.


Featured image credit

Tags: apple podcasts

Related Posts

Apple scraps Siri AI launch in the EU over intense regulatory clashes

Apple scraps Siri AI launch in the EU over intense regulatory clashes

June 9, 2026
Which devices will support macOS Golden Gate

Which devices will support macOS Golden Gate

June 9, 2026
Everything announced at WWDC26

Everything announced at WWDC26

June 9, 2026
Advanced SEO services for high impact digital strategies

Advanced SEO services for high impact digital strategies

June 8, 2026
The 8 best website builders for small businesses on any budget

The 8 best website builders for small businesses on any budget

June 8, 2026
Why European workloads are leaving US cloud in 2026

Why European workloads are leaving US cloud in 2026

June 8, 2026

LATEST NEWS

Apple scraps Siri AI launch in the EU over intense regulatory clashes

Which devices will support macOS Golden Gate

Everything announced at WWDC26

Advanced SEO services for high impact digital strategies

The 8 best website builders for small businesses on any budget

Why European workloads are leaving US cloud in 2026

BEST AI MODELS LEADERBOARD

See the best AI models, ranked by intelligence, benchmark results, speed and token price. Find the most suitable LLMs, Text-to-Image, Image Editing, Text-to-Speech, Text-to-Video and Image-to-Video  artificial intelligence model for your tasks and business.

LATEST TOOLS

Roboto AI

Pickaxe

Pfpmaker

MindPal

Syllaby

ScreenApp

FinanceBrain

GitHub Spark

Hints

VisionStory AI

Dataconomy

COPYRIGHT © DATACONOMY MEDIA GMBH, ALL RIGHTS RESERVED.

  • About
  • Imprint
  • Contact
  • Legal & Privacy

Follow Us

  • News
    • Artificial Intelligence
    • Cybersecurity
    • DeFi & Blockchain
    • Finance
    • Gaming
    • Startups
    • Tech
  • Industry
  • Research
  • Resources
    • Articles
    • Guides
    • Case Studies
    • Whitepapers
    • AI Models Leaderboard
  • AI tools
  • Newsletter
  • + More
    • Glossary
    • Conversations
    • Events
    • About
      • Who we are
      • Contact
      • Imprint
      • Legal & Privacy
      • Partner With Us
No Result
View All Result
Subscribe

This website uses cookies to improve your experience. You can choose to accept or reject them. Visit our Privacy Policy.