Urgent.News

What's breaking now, across thousands of outlets.

Tech

Apple issues urgent iOS patch as it navigates the spyware arms race

If you’ve not done so recently, you should update your Apple systems now as the company continues to fight sophisticated, targeted hacks. The latest patch protects against what the company called “an extremely sophisticated attack against specific targeted individuals.” Apple recently published an emergency security patch for users on iOS 26 and iPadOS 26 to fix the zero-click vulnerability (…

Apple issues urgent iOS patch as it navigates the spyware arms race

Apple has released an urgent security patch for iOS systems to counter a highly targeted and sophisticated attack. The patch, which addresses a zero-click vulnerability in CoreGraphics, fixes an "out-of-bounds write issue" that could allow arbitrary code execution without any user intervention. This vulnerability impacts a range of Apple devices, including iPads, Macs, and iPhones, dating back to the iPhone 11.

The zero-click vulnerability, identified as CVE-2026-86950, was reportedly exploited in a targeted attack against older versions of iOS. Apple learned of the incident through a tip-off from Meta's product security team. While the exact delivery method of the attack remains unknown, SecurityWeek suggested it may have been delivered via web browsing, email, or messaging apps. Simply previewing the malicious file could have enabled the attack, requiring no user interaction.

This incident marks the latest in a series of advanced exploits against Apple's systems. Apple's description of the attack suggests its use in an operation targeting specific individuals. Following the patch, SlowMist reported identifying iOS exploitation activity targeting sensitive wallet data. The US Cybersecurity and Infrastructure Security Agency (CISA) advised federal agencies to apply the patch and conduct forensic tests to determine if their systems had been compromised.

Apple has warned customers across 110 countries about the potential targeting of their systems. This highlights the increasingly challenging threat environment faced by Apple and other tech companies, as state, state-adjacent, and criminal actors intensify their efforts to subvert security. The growing role of artificial intelligence in both creating and identifying vulnerabilities exacerbates the issue, making it crucial for Apple users and admins to remain vigilant.

To mitigate the risk, users should update their Apple devices to the latest available security updates, avoid installing apps from unknown or untrusted sources, and refrain from opening suspicious links or files. Implementing Lockdown Mode, as recommended by Apple, can provide an additional layer of security. The evolving threat landscape underscores the importance of staying informed and adopting robust security practices.

Written by urgent.news from Computerworld's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.

Read the original at computerworld.com →

More in Tech

More from Wednesday 30 September →