Millions of iOS and macOS apps have been exposed to a security breach that could be used for potential supply-chain attacks, says an ArsTechnica report based on research by EVA Information Security.
Vulnerabilities that went undetected for a decade left thousands of macOS and iOS apps susceptible to supply-chain attacks. Hackers could have added malicious code compromising the security of ...
The vulnerabilities have since been patched, but had quietly persisted since the CocoaPods migration in 2014. Many macOS and iOS applications were open to a vulnerability in CocoaPods, an open-source ...
CocoaPods, one of the most popular ways to integrate libraries and dependencies into apps, recently had some performance issues. As it turns out, the reason was that it was too popular. Developers who ...
Security researchers at E.V.A Information Security Ltd. have detailed several vulnerabilities in the CocoaPod dependency manager used in MacOS and iOS applications that, although now patched, left ...
Researchers have discovered critical supply chain vulnerabilities in CocoaPods, the widely-used dependency manager for iOS apps. These vulnerabilities could allow attackers to hijack thousands of iOS ...
A near inconceivable number of Apple apps have been exposed to critical vulnerabilities in a popular dependency manager for years now. CocoaPods is a platform that developers in Apple's ecosystem use ...
The CocoaPods Mac app, which has been in the works for about a year, is now available for download. With a good dose of levity, the CocoaPods team notes that its main strengths are editing Podfiles ...