Apple updates close an exploited path through malicious files

Apple updates close an exploited path through malicious files. Apple released updates for iPhones, iPads, and Macs after receiving a report of highly targeted exploitation.

This is a DailyCyber.News update, brought to you by BareMetalCyber.com, for Wednesday, September 30th, 2026.

Apple released updates for iPhones, iPads, and Macs after receiving a report of highly targeted exploitation. Processing a malicious file could trigger memory corruption and allow attacker-controlled code to run. Apple said the reported activity targeted specific people using versions of iOS before iOS 27. CISA added the issue to its Known Exploited Vulnerabilities catalog on September 29th, 2026.

The confirmed risk is targeted rather than broad, but public disclosure can increase interest from other attackers. The affected component processes visual content such as images and PDFs, so a harmful file may not look like an executable program. Leaders should prioritize devices used by executives, researchers, journalists, government personnel, and others facing elevated targeting. Defenders should deploy iOS and iPadOS 26.7.1, macOS Tahoe 26.7.1, or macOS Sequoia 15.8.1 where applicable. The recurring lesson is that routine content processing can become an entry point for highly selective attacks. Install the latest Apple security updates now, beginning with devices assigned to users who face targeted threats.

For the sources and the full Daily Cyber newsletter, visit DailyCyber.News.

Apple updates close an exploited path through malicious files
Broadcast by