Apple today released iOS 26.3, iPadOS 26.3, and macOS Tahoe 26.3, all of which largely focus on bug fixes and security improvements. Apple says that the updates address dozens of vulnerabilities, including one that is known to have been actively exploited.
That vulnerability in the dyld dynamic link editor could allow for the execution of arbitrary code, and Apple says the bug may have been exploited in an "extremely sophisticated attack" against targeted individuals on versions of iOS before iOS 26.
An attacker with memory write capability may be able to execute arbitrary code. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 26.
Apple says the memory corruption issue was fixed with improved state management.
There are numerous other vulnerabilities that were also fixed across not only iOS, iPadOS, and macOS, but also Apple's other platforms that saw updates released today.
Now that these vulnerabilities have been publicized by Apple, even those that were not exploited before might be taken advantage of now. Apple recommends all users update their devices to iOS 26.3, iPadOS 26.3, and macOS Tahoe 26.3 as soon as possible.
iOS 26.5 is expected to be released next week, following more than a month of beta testing. The update is relatively minor, but there are a couple of new features and changes across the operating system that we have recapped below.
iOS 26.5 lays the groundwork for end-to-end encryption for RCS in the Messages app and ads in the Apple Maps app, and it will include a new Pride wallpaper and a...
Apple today seeded the release candidate versions of upcoming iOS 26.5 and iPadOS 26.5 updates to developers for testing purposes, with the software coming a week after Apple released the fourth betas.
Registered developers can download the betas from the Settings app on the iPhone or iPad by going to the General section and selecting Software Update.
iOS 26.5 and iPadOS 26.5 do not...
End-to-end encryption (E2EE) for RCS messages between iPhone and Android devices is coming in iOS 26.5, Apple confirmed today. The feature is listed in Apple's iOS 26.5 release notes.
Apple says end-to-end encrypted RCS messaging remains in beta even though it is being released in iOS 26.5. The feature is available with supported carriers and will roll out over time, and for conversations to ...
There is also an iOS 18.7.5 release that fixes these same vulnerabilities, but once again Apple has chosen to only give it to devices that cannot run iOS 26.
Shameful that Apple is doing this. It's obvious they don't actually care about security if they won't provide updates to iOS 18 users who still want to stay on iOS 18. Despicable.
There is also an iOS 18.7.5 release that fixes these same vulnerabilities, but once again Apple has chosen to only give it to devices that cannot run iOS 26.
I know people get bored with minor updates, but I think we take for granted sometimes the security updates that iOS gets. They do a good job preventing cyber attacks.