In addition to iOS 27.0.1, Apple has also released updates for iPhones, iPads, and Macs that are not yet running the latest system. These updates close a security vulnerability that, according to Apple, may have already been exploited for targeted attacks. Anyone who wants to keep iOS 26 should therefore update as soon as possible.
Apple released iOS 26.7.1, iPadOS 26.7.1, macOS Tahoe 26.7.1, and macOS Sequoia 15.8.1 on September 28th. iOS 27.0.1 and macOS 27.0.1 were also released on the same day, addressing bugs such as the Face ID restarts on the iPhone 18 Pro.
The updates for the older systems each close exactly one vulnerability. This vulnerability is described in Apple's security advisories for iOS 26.7.1 and iPadOS 26.7.1, macOS Tahoe 26.7.1, and macOS Sequoia 15.8.1.
Key Facts at a Glance
- iOS 26.7.1, iPadOS 26.7.1, macOS Tahoe 26.7.1 and macOS Sequoia 15.8.1 close a gap in the CoreGraphics graphics component.
- Malicious code could be executed via a manipulated file.
- Apple has received a report that the vulnerability may have been exploited in a highly sophisticated attack on specific individuals, specifically on iOS versions prior to iOS 27.
- The update is available for all iPhones from iPhone 11 onwards.
What lies behind the gap
The vulnerability lies in CoreGraphics, the component responsible for rendering graphics and documents in Apple's systems. When processing a specially crafted file, a write access outside the designated memory area could occur, allowing arbitrary code execution.
Apple fixed the bug with improved memory limit checking. It was reported by the Meta security team.
According to Apple, a report has been received indicating that the vulnerability may have been exploited in a highly sophisticated attack targeting specific individuals. Apple stated that iOS versions prior to iOS 27 were affected. The same fix is included in the updates for Tahoe and Sequoia.
Which devices will receive the update
| Update | Devices |
|---|---|
| iOS 26.7.1 | iPhone 11 and newer |
| iPadOS 26.7.1 | iPad Pro 12.9-inch (3rd generation and later), iPad Pro 11-inch (1st generation and later), iPad Air (3rd generation and later), iPad (8th generation and later), iPad mini (5th generation and later) |
| macOS Tahoe 26.7.1 | Macs with macOS Tahoe |
| macOS Sequoia 15.8.1 | Macs with macOS Sequoia |
On the iPhone, the update is available under Settings > General > Software Update. Since September 14th, Apple has displayed iOS 26 and iOS 27 as separate options there; updating within iOS 26 is the default. With this major system change, Apple had already closed numerous security vulnerabilities in iOS 27.
Targeted, but now public
According to Apple, the attack targeted specific individuals, not the general public. However, with the release of the fix, the vulnerability is now known, and anyone continuing to use iOS 26 without the new update remains vulnerable. We therefore recommend installing iOS 26.7.1 or iOS 27 as soon as possible, and the corresponding update for Tahoe or Sequoia on your Mac. The fact that Apple is also providing security updates for the previous version does not make upgrading to iOS 27 mandatory.
Those who are particularly vulnerable due to their profession or public profile can additionally activate blocking mode on their iPhone, iPad, and Mac. Apple explicitly intends this for individuals who could become targets of such sophisticated attacks.
Are you sticking with iOS 26, or was this update the reason you switched to iOS 27? Tell us in the comments what you think.





