apple patient
  • Home
  • News
  • Rumors
  • Tips & Tricks
  • Reviews
  • Insights
No Result
View All Result
  • iPhone 18
  • iPhone 18 Pro
  • iPhone Duo
  • Apple Watch Series 12
  • Apple Watch Ultra 4
  • AirPods 5
  • iOS 27
  • iPadOS 27
  • macOS
  • MacBook Neo
  • iPhone 17e
  • AirTags
  • iOS 26
  • iPhone 17
  • MacBook Pro
  • iPadOS
  • iMac
  • Mac mini
  • HomePod
  • Apple TV
  • iPad Pro
  • iPhone Air
  • Apple Vision Pro
  • iPhone 16
  • AirPods 4
  • Apple Watch Ultra
  • HomePod Mini
  • MacBook Air
  • iPad
  • AirPods Max
  • AirPods Pro 3
  • Apple Watch Series 3
  • Mac Studio
  • Studio Display
  • iPad Air
  • iPad mini
  • watchOS 27
  • Apple CarPlay
  • Apple Pay
  • watchOS 26
  • Home
  • News
  • Rumors
  • Tips & Tricks
  • Reviews
  • Insights
No Result
View All Result
apple patient
No Result
View All Result
  • iPhone 18
  • iPhone 18 Pro
  • iPhone Duo
  • Apple Watch Series 12
  • Apple Watch Ultra 4
  • AirPods 5
  • iOS 27
  • iPadOS 27
  • macOS
  • MacBook Neo
  • iPhone 17e
  • AirTags
  • iOS 26
  • iPhone 17
  • MacBook Pro
  • iPadOS
  • iMac
  • Mac mini
  • HomePod
  • Apple TV
  • iPad Pro
  • iPhone Air
  • Apple Vision Pro
  • iPhone 16
  • AirPods 4
  • Apple Watch Ultra
  • HomePod Mini
  • MacBook Air
  • iPad
  • AirPods Max
  • AirPods Pro 3
  • Apple Watch Series 3
  • Mac Studio
  • Studio Display
  • iPad Air
  • iPad mini
  • watchOS 27
  • Apple CarPlay
  • Apple Pay
  • watchOS 26

Three AirDrop vulnerabilities discovered – Apple makes improvements

Milan Jovicic by Milan Jovicic
June 30, 2026 - 16:07 CEST
in Apple News
0
Apple AirDrop

Image: Shutterstock / Lucigerma

WhatsAppFacebookEmail
Threads

Security researchers have discovered three vulnerabilities in AirDrop that can be exploited on iPhones and Macs. An attacker within wireless range can use these vulnerabilities to disable several Apple services, including AirDrop itself, AirPlay, and Handoff. While data cannot be intercepted, the functions remain blocked for the duration of the attack – Apple has already patched one of the vulnerabilities.

AirDrop is one of the most widely used features in the Apple ecosystem, wirelessly transferring files between devices in close proximity. How easily this proximity transfer can be set up and secured in everyday use also determines how vulnerable a device is. This is precisely where the recently reported vulnerabilities come into play: they affect both iPhones and Macs, and researchers also found similar problems with QuickShare, the counterpart on Android devices.

How the attack unfolds

The attack requires only a laptop with Wi-Fi and a location within range, which, according to the researchers, is often between ten and thirty meters. Neither pairing nor contact exchange nor a shared network is necessary. Particularly problematic: On Apple devices where AirDrop is set to "Everyone," the system responds at an early stage of the protocol, even before a confirmation prompt appears.

The simplest of the three vulnerabilities stems from a programming error in the component that routes incoming requests: If a request encounters an unknown path, the entire process terminates. A single, brief request is thus sufficient to crash multiple services simultaneously. If repeated every few seconds, the functions become permanently unusable. In a test, all regular connection attempts failed while the attack was active and only succeeded again once it was stopped. To reduce the risk, users should set AirDrop reception to "Contacts Only" or turn it off entirely when the feature is not actively needed.

Which services will be shut down?

The impact extends beyond AirDrop. A successful attack also disables AirPlay, Handoff, Universal Clipboard, and Continuity Camera. All these services rely on the same underlying proximity communication and therefore fail simultaneously. The good news: No data can be stolen – the attack aims solely to block the functionality, not to intercept information.

One vulnerability fixed, two remain open

The vulnerabilities were discovered by security researcher Arash Ebrahim, who adhered to the usual practice of responsible disclosure and withheld specific details until they were fixed. According to him, Apple has already closed one of the three AirDrop vulnerabilities in a software update and assigned it a CVE identifier; however, the corresponding security advisory is not yet public. The other two vulnerabilities are still in the coordinated disclosure process and have not yet received a public CVE number.

It is noteworthy that the same vulnerability patterns occur in both Apple and Google products, despite minimal code sharing. The researcher attributes this not to a single manufacturer, but to a fundamental challenge with short-range communication protocols: For sharing to function as seamlessly as possible, privileged background services must process complex, externally controlled data even before authentication or user authorization has taken place. This creates a large attack surface before every login.

Why such gaps are difficult to avoid

The fact that a convenience feature like AirDrop is deliberately designed for simple, low-requirement connections also makes it vulnerable to precisely these kinds of jamming attacks. Until Apple closes the remaining two vulnerabilities, the most effective precaution remains simple: limit reception and only enable it when actually needed. Currently, there is no data risk – but there is a possibility that key convenience features could temporarily fail in an attacker's vicinity. (Image: Shutterstock / Lucigerma)

  • Leaked iPhone 18 Pro videos disappear again
  • Apple is bringing forward security updates due to AI threat
  • OpenClaw brings its AI agent to the iPhone as an app
  • iPhone 18 Pro drop tests surface on the dark web
  • iOS 26.5.2, iPadOS 26.5.2 and macOS 26.5.2 are here
  • iOS 26.6 Beta 3: Apple nears completion
  • WhatsApp: Usernames can now be reserved
  • Apple acquires the award-winning design tool Play
  • Indian antitrust case: Apple accuses the authority of plagiarism
  • Apple and Chinese storage: Approval is likely to be difficult
  • Apple is seeking approval for Chinese storage devices
  • The US partially releases Claude Mythos 5
  • Data leak at Tata: Apple and suppliers react
  • OpenAI poachs Apple's Vision Pro and glasses chief
  • Storage crisis: Apple is also said to be partly responsible
  • Apple is heading towards record market shares in 2026
  • Apple hints at further price increases
  • Apple is raising prices: Macs, iPads and more are getting more expensive
  • Siri AI should clearly reject URL summaries
  • Stolen iPhone: Apple tightens its recommendations
Make Apfelpatient a preferred source One click – and you'll see us more often on Google
Was this article helpful?
YesNo
Tags: CybersecurityiOSmacOS
SendShareSend
Share

Our Amazon Storefront

A handpicked selection of products for iPhone, Mac and more – sorted by topic and updated regularly.

Shop Now

This post contains affiliate links (including Amazon). We earn a small commission on qualifying purchases – at no extra cost to you. Learn more on our Partner Program page.

Previous Post

New leaked image shows iPhone 18 Pro in Dark Cherry

Next Post

UK plans to open Apple's App Store following the EU model

Milan Jovicic

Milan Jovicic

Milan founded Apfelpatient in 2016 and has been responsible for all editorial content since 2018 — news, rumors, guides, and product reviews. Apple devices here are not test units on loan for two weeks but everyday tools: from the iPhone through MacBook Pro, MacBook Air, and iMac to the Apple Vision Pro, at least one device from nearly every product category is in daily use, many of them replaced annually. Every menu path in a guide is verified on the device before it is published.

Related posts

watchOS 27.2: Code reveals new screenshot preview

by Milan Jovicic
September 24, 2026 - 8:36 p.m. CEST
Apple Watch Ultra with an orange band showing the app view, the device getting the new screenshot preview in watchOS 27.2

watchOS 27.2 includes a new screenshot interface for the Apple Watch: preview, share, and delete, just like on the iPhone. It's currently inactive.

Read moreDetails

Apple TV: Peanuts classics free again for Christmas

by Milan Jovicic
September 24, 2026 - 6:43 p.m. CEST
Charlie Brown holding a small Christmas tree under a starry sky in the snow, a scene from A Charlie Brown Christmas, free again on Apple TV

Three classic Peanuts cartoons are back on Apple TV for the holidays, no subscription required. Plus, there are new specials featuring Snoopy and the Fraggle Rocks.

Read moreDetails

The Wanted Man: Hugh Laurie on Apple TV from January

by Milan Jovicic
September 24, 2026 - 6:19 p.m. CEST
Hugh Laurie as crime boss Felix Carmichael in an evening scene from The Wanted Man on Apple TV

The Wanted Man premieres on January 6, 2027 on Apple TV. Hugh Laurie plays a crime boss who wants to escape – the finale is in February.

Read moreDetails

Apple and Qualcomm extend patent license from 2027

by Milan Jovicic
September 24, 2026 - 6:04 p.m. CEST
Back of an iPhone 18 Pro Max in a burgundy case on a grey surface, covered by the renewed Apple Qualcomm patent license

Apple and Qualcomm are extending their patent license from April 2027. Why this has nothing to do with the modem change and affects Germany.

Read moreDetails

iPhone 18 Pro: Update to prevent Face ID restarts is coming

by Milan Jovicic
September 24, 2026 - 1:13 p.m. CEST
iPhone showing the General settings with Software Update, where the fix for the Face ID reboots on iPhone 18 Pro will arrive

Apple has confirmed an update to fix the restarts after failed Face ID recognition on the iPhone 18 Pro and Pro Max. An exchange is not worthwhile.

Read moreDetails
Load More

Categories

  • Apple Insights
  • Apple Rumors
  • Apple News
  • Apple Tips & Tricks
  • iPhone news, rumors and tips
  • Mac and MacBook News
  • Reviews

About APFELPATIENT

APFELPATIENT brings you the latest Apple news, product updates, guides, reviews and tips across the entire Apple ecosystem — from the iPhone to the Mac to the Apple Vision Pro. From the first rumors to confirmed news: researched responsibly.

Follow Apfelpatient

Facebook Instagram YouTube Threads Threads

Company

  • About Apfelpatient
  • Contact
  • Author Profiles

Community

  • Netiquette
  • Push Notifications
  • RSS feed

Legal

  • Legal Notice
  • Privacy Policy
  • Terms of Use
  • Cookie Settings
  • Affiliate Program

Resources

  • Sitemap

© 2026 Apfelpatient. All rights reserved.

No Result
View All Result
  • Home
  • News
  • Rumors
  • Tips & Tricks
  • Reviews
  • Insights

© 2026 Apfelpatient. All rights reserved. Page Directory

Change language to Deutsch