Apple Siri Vulnerability on Locked Devices Allowing Access to Sensitive User Data

Vulnerability

A vulnerability exists in Siri's functionality on locked devices running macOS Ventura 13.7.5, iOS 18.4, iPadOS 18.4, iPadOS 17.7.6, macOS Sequoia 15.4, and macOS Sonoma 14.7.5. This vulnerability allows an attacker with physical access to the device to use Siri to access sensitive user information. The issue arises from insufficient restrictions on data access when the device is locked.

Impact

Exploitation of this vulnerability could lead to unauthorized access to sensitive user data on a locked device.

Added: Sep 1, 2025, 7:22 PM
Updated: Sep 1, 2025, 7:22 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
3.3
remediation
0.0
relevance
0.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.