Apple Patches Critical iPhone Flaw Linked to Crypto Attacks
Apple has patched a critical iPhone vulnerability, CVE-2026-86950, that could have been exploited in highly sophisticated attacks. The flaw affects Apple's CoreGraphics framework and allows attackers to execute arbitrary code after processing maliciously crafted files.
The company released the fix with iOS 26.7.1 and iPadOS 26.7.1 on September 28. Apple stated it was aware of a report indicating the vulnerability 'may have been exploited in an extremely sophisticated attack against specific targeted individuals' running older versions of iOS.
Blockchain security firm SlowMist has highlighted the importance of this update due to recent iOS exploitation activity involving cryptocurrency users, warning that crypto users are especially at risk. While Apple hasn't confirmed that CVE-2026-86950 was used in cryptocurrency thefts, SlowMist's investigation into a malicious application called FomoPeek found kernel exploits capable of accessing sensitive information.