Bottom line: Apple has set a new record for most vulnerabilities patched in a single update, but the increase is not as significant as other tech companies.
What's happening: Apple released its annual update, which includes new features for iOS 16.0.1, iPadOS 16.0.1, macOS Monterey 12.6.3, watchOS 9.0, and tvOS 16.1. The update addresses vulnerabilities in Apache Kafka, OpenSSH, and other software, including CVE-2022-42891, CVE-2022-47993, and CVE-2022-47996.
What to do: CISOs should review their incident response plans to ensure they account for the increased attack surface, and consider implementing additional security controls, such as intrusion detection systems, to mitigate the risk of exploitation. DATE: 14 Sep 2022