Apple releases iOS 26.7.1 to fix high-risk vulnerabilities in core graphics components that have been used by hackers to launch attacks

📅 2026-09-29

Abstract:

Apple has just launched iOS 26.7.1 and iPadOS 26.7.1, which have no new features but fix important security vulnerabilities. Apple has received reports that the vulnerability could be used to conduct extremely sophisticated attacks against specific individuals, and Apple has blocked the vulnerability by improving perimeter checks.

CVE-2026-86950 is an out-of-bounds write vulnerability. Simply put, when a program processes specially constructed data, it may write the content outside the pre-allocated area, thus destroying the memory. When certain conditions are met, an attacker may use this to allow the system to execute malicious code.

CoreGraphics is an important component responsible for graphics content processing, involving the rendering of images, interfaces, and other visual content. However, Apple did not disclose the specific format of the malicious file, nor did it explain whether the attack was delivered through web pages, emails, instant messaging tools, or other channels.

Recently, malicious applications have exploited complex kernel-level vulnerabilities to steal cryptocurrency wallet data after installation. This security incident resulted in the theft of a large number of users' crypto assets, but the attack path requires users to actively install the malicious application (the application uses currency circle data tracking as a promotional point to induce users to actively install).

However, related attacks are mainly related to DarkSword-related exploit chains. Currently, some currency users on social media have linked CVE-2026-86950 to recent attacks. However, judging from the current evidence, this may not be relevant, that is, DarkSword mainly exploits known vulnerabilities. Users should not be attacked as long as they ensure to always use the latest version of iOS.

In addition, recent attacks on iOS systems are increasing rapidly, and most of them use the DarkSword attack chain. For example, users may be infected with malicious programs when they use the Apple Safari browser to open phishing websites. Therefore, it is necessary for iOS users to always use the latest version to improve security.

Related tags

Related articles

Comments

0/500
Captcha (click to refresh)
No comments yet