Apple has released iOS 26.7.1 and iPadOS 26.7.1 to address CVE-2026-86950, a CoreGraphics vulnerability that could let attackers execute arbitrary code by tricking a device into processing a malicious file. The issue was described as an out-of-bounds write, and Apple said the update adds improved bounds checking.
The company also said the flaw may have been exploited in attacks against specific targets before iOS 27. That disclosure prompted renewed warnings from blockchain security researchers, although there is no public evidence that this particular bug was used to steal cryptocurrency or drain wallets.
What Apple disclosed
According to Apple, CVE-2026-86950 affected CoreGraphics, a system component involved in handling graphics-related content. A successful exploit could enable arbitrary code execution if a user’s device processed a specially crafted file.
Apple did not provide public details on how many people may have been targeted, who the victims were, or whether any financial losses were tied to the flaw. Its advisory said only that the vulnerability may have been exploited against specific targets on versions released before iOS 27.
Why crypto users were singled out
The patch drew added attention in the crypto sector after SlowMist warned that iOS exploits had recently been aimed at obtaining sensitive wallet data. The security firm urged cryptocurrency users with affected Apple devices to install the latest update.
Even so, the available information stops short of proving that CVE-2026-86950 played a role in earlier wallet compromises. Apple has not linked the bug to crypto thefts, and no public evidence has connected this CoreGraphics issue to any confirmed wallet-draining incidents.
Related research, but no confirmed connection
The broader concern comes from separate research into iOS exploit frameworks including FomoPeek and Darksword, which have been studied for their potential ability to reach cryptocurrency wallet information on compromised devices.
Those tools, however, have not been shown to be connected to CVE-2026-86950. Their mention adds context to why the crypto industry is reacting cautiously, but it does not establish that the newly patched Apple flaw was part of the same activity.
What affected users can do next
For people using affected iPhones or iPads, the confirmed step is to upgrade to iOS 26.7.1, iPadOS 26.7.1, or a newer release. That is the direct mitigation Apple has published for the CoreGraphics issue.
Where wallet data may already have been exposed, the cited guidance is more cautious: regenerate credentials on a clean device and move funds if secrets were compromised. Beyond that, Apple has not released further information about victims, losses, or any investigation tied to the vulnerability.
Source: crypto.news