Skip to main content
AppleSecurity incident

Still running iOS 26? Update your iPhones, iPads and Macs for this urgent security fix

What happened

Apple has fixed a security vulnerability, CVE-2026-86950, in its iOS 26, iPadOS 26 and macOS 26 operating systems that the company says may have been exploited by hackers.

Source

Article excerpt

Highlighted: the sentence this signal was extracted from

Apple has fixed a security vulnerability in its iOS 26, iPadOS 26 and macOS 26 operating systems that the company says "may have been exploited" by hackers. The tech giant said the now-fixed bug could be used to launch "an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 27." According to a listing on Apple's security pages, the bug was found in the main graphics engine that powers the user interface and visuals on iPhones, iPads and Macs. Meta's product security team was credited with the discovery. Details of the bug, officially classed as CVE-2026-86950, were not released, but a device's graphics engine typically has broad access to the rest of the device's operating system. A successful exploit could potentially allow a hacker to steal a broad range of personal data from an affected device. When reached by TechCrunch, spokespeople for Apple and Meta did not provide comment about how the bug was discovered, or how many people had their devices hacked due to this vulnerability, if any. It's also unclear who may be exploiting the bug, such as government spyware makers or cybercriminals. While the bug affects Apple's previous generation of operating systems, it remains in wide usage. Almost four-in-five of Apple's iPhone owners are still running iOS 26, according to the company's own statistics. Devices running the latest...

Keep reading with a free account

The rest of this article, and every signal for Apple, is in your free account.

Extracted by Autobound

From the Signal API record
Event
Security incident

What this signalsA breach often leads to new security spend.

More security incident signals at other companies

The full record

From the Signal API record

Details

Issue named
CVE-2026-86950, a bug in the main graphics engine that may have been exploited to launch sophisticated attacks against targeted individuals.

Extraction

Confidence
90%
Detected
Sep 29, 2026
signal_type
news
signal_subtype
security_incident

Use this data

Get every security incident signal for Apple and the companies you sell to, in the tools you already use.

  1. Ask Claude about it

    Connect Autobound to Claude, Claude Code or Cursor with MCP. Then ask: “What changed at Apple this week?”

  2. Send it to your own tools

    The Signal API returns security incident signals for any list of companies as JSON, for your CRM, warehouse or app.

  3. Try it free

    Sign up and spend your free credits on the companies you sell to.

    Start Free1,000 free credits

The API returns more than this page shows

This page shows a preview. The full news record in the Signal API and MCP can also have these 8 fields. Some fields are empty for some signals.

Company

  • linkedin_urlValue in the API
  • industriesValue in the API
  • employee_count_lowValue in the API
  • employee_count_highValue in the API
  • revenueValue in the API
  • descriptionValue in the API

Signal

  • signal_nameValue in the API
  • associationValue in the API
Show the full JSONThe record on this page and the API request

GET /v1/signals/d572beff-6d6f-38b8-d761-53bfdd166210 returns this record as JSON. POST /v1/companies/enrich returns every signal for apple.com.

{
  "signal_id": "d572beff-6d6f-38b8-d761-53bfdd166210",
  "signal_type": "news",
  "signal_subtype": "security_incident",
  "detected_at": "2026-09-29T13:25:21+00:00",
  "company": {
    "name": "Apple",
    "domain": "apple.com"
  },
  "data": {
    "url": "https://techcrunch.com/2026/09/29/still-running-ios-26-update-your-iphones-ipads-and-macs-for-this-urgent-security-fix/",
    "title": "Still running iOS 26? Update your iPhones, iPads and Macs for this urgent security fix",
    "author": "Zack Whittaker",
    "excerpt": "Apple has fixed a security vulnerability in its iOS 26, iPadOS 26 and macOS 26 operating systems that the company says “may have been exploited” by hackers. The tech giant said the now-fixed bug could be used to launch “an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 27.” According to a listing on Apple’s security pages , the bug was found in the main graphics engine that powers the user interface and visuals on iPhones, iPads and Macs. Meta’s product security team was credited with the discovery. Details of the bug, officially classed as CVE-2026-86950, were not released, but a device’s graphics engine typically has broad access to the rest of the device’s operating system. A successful exploit could potentially allow a hacker to steal a broad range of personal data from an affected device. When reached by TechCrunch, spokespeople for Apple and Meta did not provide comment about how the bug was discovered, or how many people had their devices hacked due to this vulnerability, if any. It’s also unclear who may be exploiting the bug, such as government spyware makers or cybercriminals. While the bug affects Apple’s previous generation of operating systems, it remains in wide usage. Almost four-in-five of Apple’s iPhone owners are still running iOS 26, according to the company’s own statistics . Devices running the latest...",
    "summary": "Apple has fixed a security vulnerability, CVE-2026-86950, in its iOS 26, iPadOS 26 and macOS 26 operating systems that the company says may have been exploited by hackers.",
    "planning": false,
    "image_url": "https://techcrunch.com/wp-content/uploads/2026/04/iphone-red-spyware-2255962085.jpg?resize=1200,800",
    "confidence": 0.9,
    "published_at": "2026-09-29T13:25:21Z",
    "vulnerability": "CVE-2026-86950, a bug in the main graphics engine that may have been exploited to launch sophisticated attacks against targeted individuals.",
    "article_sentence": "Apple has fixed a security vulnerability in its iOS 26, iPadOS 26 and macOS 26 operating systems that the company says “may have been exploited” by hackers."
  }
}

Long text fields are shortened on this page.

Looking up one signal by its id is free. Enrich costs 2 credits per signal returned; a call with no results is free.