Apple releases an urgent security patch for iOS, iPadOS and macOS 26 after confirming a targeted exploit, urging users to update immediately to protect their devices.

Apple rolled out an urgent security patch Friday for iOS, iPadOS and macOS 26 after confirming the flaw was exploited against targeted users.
The company said the vulnerability allowed attackers to gain unauthorized access to device data. Apple’s security team identified the exploit in late March and warned that it was being used in the wild.
Scope of the attack
Apple reported that the bug affected devices running version 26 of its operating systems. The firm estimates that a majority of its active iPhone, iPad and Mac users have not yet upgraded to the newer releases.
“We have observed malicious activity against specific individuals who remained on iOS 26, iPadOS 26 or macOS 26,” an Apple spokesperson said. The statement did not name the individuals or describe the data that was accessed.
How the vulnerability works
The flaw resides in the kernel’s memory‑management routine. Exploiting it requires the attacker to deliver a crafted packet to the device over a network connection. Once executed, the code can run with system privileges, bypassing standard sandbox protections.
Security researchers who examined the patch confirmed that Apple patched the kernel routine and added additional checks to prevent similar exploits.
Steps to protect your device
- Open Settings on iPhone or iPad, tap General, then Software Update.
- On Mac, choose Apple menu → System Settings → Software Update.
- Install the update labeled “iOS 26.5.1,” “iPadOS 26.5.1” or “macOS 26.5.1” as applicable.
- Restart the device after installation to ensure the patch takes effect.
Apple advises users to enable automatic updates to receive future fixes without delay. The company also recommends reviewing app permissions and disabling unused network services until the update is applied.
No public reports indicate that the exploit resulted in widespread data theft, but Apple cautioned that the targeted nature of the attacks could imply a higher risk for individuals in sensitive positions.
Analysts said the swift rollout reflects Apple’s commitment to maintaining a secure ecosystem. The patch is expected to close the vulnerability and restore confidence among users who have delayed updates.
0 Comments