iPhone Crypto Investors Warned: Apple Releases Update for Critical Vulnerability
Apple released a security update for iPhone and iPad, while SlowMist official 23pds warned that the patch may address a vulnerability reportedly used to drain crypto wallets.
According to Wu Blockchain, SlowMist Chief Information Security Officer 23pds linked Apple’s new update to attacks targeting cryptocurrency users. iOS 26.7.1 and iPadOS 26.7.1, released by Apple on September 28, address a security issue in the CoreGraphics component.
Apple said it had received a report that the vulnerability may have been used in highly sophisticated attacks targeting specific individuals on versions before iOS 27. The assessment linking it to crypto wallets is 23pds’s.
Malicious file can execute code on the device
The vulnerability, tracked as CVE-2026-86950, can allow an attacker to execute arbitrary code on a device when a specially crafted malicious file is processed. Apple fixed the issue, which could cause data to be written outside memory bounds, by improving bounds checks.
The security note credits the Meta Product Security team with discovering the vulnerability.
Update covers iPhone and iPad models
The published security note lists iPhone 11 and later, along with various iPad Pro, iPad Air, iPad, and iPad mini models, among the devices supported by the update. Device owners can check for the update available to them under Settings → General → Software Update.
