isc.sans.edu 28 Sept 2026, 22:35 UTC

Apple Patches Exploited iOS Flaw in Targeted Attacks

Apple Patches Exploited iOS Flaw in Targeted Attacks
CyberSIXT Evidence Panel
CISA KEV Not in KEV
Patch Patch Status Unknown

APPLE has released operating-system updates addressing CVE-2026-86950 in iOS 26, macOS 26 and macOS 15. The vulnerability is reportedly being exploited, and Apple credits Meta Product Security with reporting it. Apple said it was aware of a report that the issue “may have been exploited in an extremely sophisticated attack against specific targeted individuals” using iOS versions earlier than iOS 27.

The SANS Internet Storm Centre said patches for Apple’s older software branches contain the security fix, while iOS 27 and macOS 27 are not affected. Apple’s update for the current “27” branch instead addresses functional problems identified after its release two weeks earlier and does not contain a security fix, according to the report. Users of affected iOS and macOS versions should install Apple’s relevant security update.

View full article

Article by CyberSIXT