Malicious link to video causes iPhones to crash
Apple devices need hard reboot after video is played


A link to a short video could cause an iPhone or iPad to become unusable and eventually crash.
Playing a mp4 video in Safari on any iOS device will cause the device to slow down and then freeze in about 30 seconds. The video itself is hosted on a Chinese Vine-like video sharing app called Miaopai.
The cause of the problem is still unknown but is it likely that a corruption in the file causing a memory leak in Safari is the most likely candidate so far.
The short three-second video clip shows someone standing by a bed with the word "Honey" printed across the screen. The bug doesn't immediately brick a phone but starts slowing it down after 30 seconds.
A YouTube video by Everything Apple Pro details how the glitch works, which seems to affect all iOS devices but doesn't appear to have any long-term effects. The problem doesn't affect users of Android devices, but one user of a Mac running Sierra has said the video crashed their machine.
Should a user's phone be affected by the video, a hard reboot by holding the power and home buttons should restart the device. On iPhone 7 with the non-mechanical button, users will have to press the power and volume down button. The issue affects versions of iOS from iOS 5 to iOS 10.3 beta.
It is not known if Apple are working on a fix for the problem, but generally in these cases it does get a fix out pretty fast.
Get the ITPro daily newsletter
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
The bug is similar to last year's "Effective Power" bug that crashed phones when a text message was sent to victim's iPhones.
-
Bigger salaries, more burnout: Is the CISO role in crisis?
In-depth CISOs are more stressed than ever before – but why is this and what can be done?
By Kate O'Flaherty Published
-
Cheap cyber crime kits can be bought on the dark web for less than $25
News Research from NordVPN shows phishing kits are now widely available on the dark web and via messaging apps like Telegram, and are often selling for less than $25.
By Emma Woollacott Published
-
Should your business start a bug bounty program?
In-depth Big tech firms including Google, Apple and Microsoft offer bug bounty programs, but can they benefit smaller businesses too?
By Kate O'Flaherty Published
-
OpenAI to pay up to $20k in rewards through new bug bounty program
News The move follows a period of unrest over data security concerns
By Ross Kelly Published
-
Windows 11 System Restore bug preventing users from accessing apps
News Microsoft has issued a series of workarounds for the issue which is affecting a range of apps including Office and Terminal
By Ross Kelly Published
-
Windows 10 users encounter ‘blue screen of death’ after latest Patch Tuesday update
News Microsoft said it is working on a fix for the issue and has offered users a temporary workaround
By Ross Kelly Published
-
SpaceX bug bounty offers up to $25,000 per Starlink exploit
News The spacecraft manufacturer has offered white hats immunity to exploit a wide range of Starlink systems, with a dedicated report page
By Rory Bathgate Published
-
Microsoft announces lucrative new bug bounty awards for M365 products and services
News The new awards will focus on scenario-based weaknesses and offer bonuses of up to 30% for the most severe bugs
By Connor Jones Published
-
Adobe forced to patch its own failed security update
News Company issues new fix for e-commerce vulnerability after researchers bypass the original update
By Danny Bradbury Published
-
Google doubles bug bounty rewards for Linux, Kubernetes exploits
News The increased rewards are said to align better with the community's expectations of a bug bounty programme of this kind
By Connor Jones Published