Still running iOS 26? Update your iPhones, iPads, and Macs for this urgent security fix
Apple has released iOS 26.7.1 and corresponding updates for iPads and Macs to patch a high-severity zero-day vulnerability. Identified as CVE-2026-86950, the security flaw has been actively weaponized in sophisticated, targeted attacks against specific individuals. CERT-In and Apple issued urgent warnings telling users who have not yet upgraded to iOS 27 to immediately download the latest patches. Malwarebytes warns that a malicious file could trigger the vulnerability to run attacker code.
Listen to Live Briefing
Real-time synthesized voice briefing · Live Feeds Desk
- ✓ Apple patched security vulnerability CVE-2026-86950 in iOS 26, iPadOS 26, and macOS 26.
- ✓ CERT-In warned iPhone, iPad, and Mac users about a high-severity flaw actively exploited in sophisticated attacks.
- ✓ Apple stated the bug was used to attack specific targeted individuals running iOS 26.
What changed
Apple released emergency software patches including iOS 26.7.1 to address a zero-day vulnerability actively used in targeted attacks.
Live updates
-
Apple Issues Urgent Security Fix for Zero-Day Flaw
Apple has released iOS 26.7.1 and corresponding updates for iPads and Macs to patch a high-severity zero-day vulnerability. Identified as CVE-2026-86950, the security flaw has been actively weaponized in sophisticated, targeted attacks against specific individuals. CERT-In and Apple issued urgent warnings telling users who have not yet upgraded to iOS 27 to immediately download the latest patches. Malwarebytes warns that a malicious file could trigger the vulnerability to run attacker code.
Why it matters
The majority of Apple customers are still running iOS 26 rather than newer software versions like OS 27, leaving a broad user base exposed to targeted exploits. Security agencies and tech publications are strongly urging manual updates to prevent further exploitation of the active zero-day threat.
What is confirmed
- Apple patched security vulnerability CVE-2026-86950 in iOS 26, iPadOS 26, and macOS 26.
- CERT-In warned iPhone, iPad, and Mac users about a high-severity flaw actively exploited in sophisticated attacks.
- Apple stated the bug was used to attack specific targeted individuals running iOS 26.
Still unconfirmed
- A malicious file could trigger the vulnerability to run attackers' code.
What to watch next
- Broader technical details or disclosures regarding the exact nature of the targeted attacks
- Additional advisory updates from CERT-In or Apple regarding secondary exploits
confidence 100%Sources used for this update (10)
- TechCrunch — Still running iOS 26? Update your iPhones, iPads, and Macs for this urgent security fix
- Forbes — iOS 26.7.1—Update Now Warning Issued To iPhone Users
- darkreading.com — Apple Zero-Day Vulnerability Weaponized in Targeted Attacks
- CNET — Still on iOS 26? You Need to Download iOS 26.7.1 Now for This Zero-Day Patch
- Macworld — If you’re not running OS 27, there’s an important update waiting for you
- www.latestly.com — CERT-In Issues High-Severity Apple Security Alert: iPhone, iPad and Mac Users Must Update
- techcrunch.com — Still running iOS 26? Update your iPhones, iPads, and Macs ...
- daily.dev — Still running iOS 26? Update your iPhones, iPads and...
- www.antispier.com — Still running iOS 26? Update your iPhones, iPads, and Macs ...
- www.malwarebytes.com — Update your iPhone, iPad, or Mac: Flaw could run attackers ...
Community Sentiment: How do you assess this situation?
Voice your perspective · Real-time aggregated sentiment from the Live Feeds community