Skip to main content
  1. Home
  2. Phones
  3. Computing
  4. Mobile
  5. Features

How to keep your Apple devices safe from AirPlay attacks

Add as a preferred source on Google
Apple AirPlay streaming to another device.
Apple / Digital Trends

Apple’s approach to building new features has always been rooted in safety and seamless convenience. Take, for example, AirPlay, a wireless standard created by the company that allows users to stream audio and video from one device to another.

AirPlay works not just across Apple devices, but also on TVs and speakers cleared by the company to offer the wireless streaming facility. That also makes it a ripe target for attacks, and it seems there are, in fact, vulnerabilities in the wireless lanes that could allow bad actors to seed malware and infect more connected devices. 

Understanding the AirPlay risk

Experts at the security research firm Oligo recently detailed Airborne, a set of flaws in Apple’s AirPlay Protocol and the AirPlay Software Development Kit (SDK) that can allow hackers to remotely execute code. These vulnerabilities can let bad actors take control of devices and use the infected machines to broaden the damage. 

Recommended Videos

“An attacker can take over certain AirPlay-enabled devices and do things like deploy malware that spreads to devices on any local network the infected device connects,” Oligo explained. The risk is huge because there are billions of Apple devices out there that support AirPlay, and millions that are sold by other brands. 

One of the vulnerabilities could allow hackers to compromise a device and then use it to gain access to a larger network, potentially targeting other devices, too. Depending on the target, the risks range from spying on conversations to tracking a car’s location, accessing sensitive information, ransomware attacks, and denial of service. 

Apple has patched the vulnerabilities via macOS Sequoia 15.4, tvOS 18.4, macOS Ventura 13.7.5, iPadOS 17.7.6, macOS Sonoma 14.7.5, iOS 18.4 and iPadOS 18.4, visionOS 2.4 updates. However, there are potentially thousands of older devices that will never get patched and remain vulnerable. 

What steps do experts suggest?

Of course, the first line of defense to protect yourself across all vulnerable devices is to download the fix released by Apple. But that isn’t the full picture. Trevor Horwitz, CISO and founder of TrustNet, says the patch will only work if people install it after the package downloads on their device.

“The simplest and most effective thing you can do is keep your devices updated. That sounds basic, but it’s often overlooked,” he says. On an iPhone or iPad, follow this route to install the safety update: Settings > General > Software Update. For macOS, you must walk this path: Apple menu > System. Settings > General > Software Update.

Since attack vectors like Airborne rely on Wi-Fi networks to expand their damage, you must also pay attention to them. Oleh Kulchytskyi, Senior Malware Reverse Engineer at MacPaw’s Moonlock, told DigitalTrends that a Zero-Click Remote Code Execution (RCE) is the highest level of security breach. 

It should be immediately patched by the companies involved, but as a user, one must take further network-related precautions. “To stay safe at home, ensure that your router has a strong password and there are no suspicious connections to your network,” Kulchytsky adds.  

A safe way to AirPlay

Matthias Frielingsdorf, a veteran iOS researcher and cofounder of iVerify, tells me that everyone should follow basic digital security protocols. Those include installing updates as soon as they are available, maintaining strong network passwords, and most importantly, reducing the surface area for such attacks. 

Since AirPlay is the threat vector, users should take proactive steps while using it. ”Disabling this on iOS / macOS / tvOS devices that don’t need to be an AirPlay receiver would limit some of the attacks. In public spaces, disabling WiFi on the Mac and iPhone would stop those attacks as well,” says Frielingsdorf. 

AirPlay streaming is active by default, and as such, you need to disable it. To do so, follow this path on your iPhone or iPad: Settings  > General > AirPlay & Continuity > Ask. You can also set it to Never, if you don’t actively utilize this feature. There’s also an option to set a password, which I recommend that you enable, while at it.

What about AirPlay itself? Can it be disabled? Yes, it can be turned off entirely. On your iPhone and iPad, go to the AirPlay & Continuity page and turn off the AirPlay Receiver toggle. Alternatively, you can choose to allow AirPlay only for the Current User, instead of keeping it open to everyone in the range. 

For Mac users, this is the path you need to follow: Apple Menu > System Settings > General > AirDrop & Handoff > AirPlay Receiver. You can’t always patch older or discontinued devices, so it’s best to ensure that the machines that are currently in your hands have enabled the right protocols to minimize the risks. 

The bottom line 

On multiple occasions in the past, security experts have highlighted flaws in wireless transmission systems, such as Bluetooth. But a vulnerability that allows zero-click remote code execution in AirPlay is a cautionary tale. The message is clear.

Apple’s security guardrails are solid, but not impenetrable.

“What makes this serious is the integration. AirPlay isn’t just a standalone app. It’s a system-level service built into iOS, macOS, and tvOS. So the moment that layer is compromised, the attacker could potentially affect multiple devices at once,” TrustNet’s Horwitz told Digital Trends. 

So, where does that leave an average user who is not savvy about security measures? Well, it’s time to set aside notions and market perceptions. Chris Hill, Chief Security Strategist at BeyondTrust, says users must understand the threat landscape instead of living with the idea that a certain ecosystem is safer than the rest. 

“Threat actors are opportunistic, looking for the easiest path of least resistance, they will find it, and they did in this case with AirPlay and AirBorne,” he warns. The bottom line is that keep your devices updated, disable features you don’t use, and be vigilant with network-related settings.

Nadeem Sarwar
Nadeem is the Managing Editor at Digital Trends.
Back-to-school phone shopping on a tight budget? Here’s the one phone I’d recommend without hesitation
The budget phone market got messy this year, but one phone still makes sense.
Galaxy A17 in all colors on gradient background

Somewhere between the last day of school and the first day back, your phone conked out. Perhaps the screen shattered after a particularly nasty fall, or its battery regularly gives up by noon, or apps take so long to launch that by the time they do, you've forgotten why you opened them in the first place. You don't think it'll last another school year, but between all the school supplies and everything else, a budget phone is all your wallet can handle right now.

Fortunately for you, cheap phones have come a long way, offering better screens, bigger batteries, and more capable cameras than devices launched just a couple of years ago. Since you're already prepping to head back to school, this is as good a time as any to lay your old phone to rest and lock in an upgrade. But unfortunately, the timing isn't great for the smartphone industry in general, and that has had a real impact on entry-level phones.

Read more
5 mid-range phones I’d recommend you spend your Back-to-School budget on
From the Pixel 10a to the Moto G Power 2026, these five phones prove you don't need flagship money for a great back-to-school upgrade.
Electronics, Mobile Phone, Phone

Does your phone have a cracked screen? A battery that barely makes it past 3 PM? Or a camera that captures a blurry mess instead of great memories? You know it's high time for a new one, and right now, while you're shopping for the new school year, is probably the best time to make the switch.

The best part is that you don't need to spend flagship money to get a phone that'll last you the next few years. Mid-range phones have gotten seriously good of late, closing the gap with flagships where it matters the most, be it battery life, performance, or camera quality. Whether you're upgrading your own phone or picking one out for your kid before classes start, here are the best mid-range phones worth your money this back-to-school season.

Read more
After four generations of camera stagnation, the Galaxy S27 might finally get a new main sensor
Samsung could turn to Sony for the Galaxy S27’s long-overdue main camera upgrade
Samsung Galaxy S26

Samsung might finally be ready to stop recycling the same main camera hardware on its standard Galaxy S phones, which it introduced with the Galaxy S22. GalaxyClub reports that some Galaxy S27 and Galaxy S27+ prototypes are being tested with a new 50MP Sony sensor for the main camera.

Such a move would break Samsung’s long-running preference for its own ISOCELL hardware in the primary cameras of Galaxy S phones, even if the resolution remains unchanged.

Read more