Skip to main content
  1. Home
  2. Computing
  3. News

AI is finding Apple security flaws faster than Apple can sort through them

Apple has limited how many bug reports researchers can keep open as AI tools produce both genuine Mac vulnerabilities and a flood of questionable submissions

Add as a preferred source on Google
Lighting, Architecture, Building
Bangyu Wang / Unsplash

Apple has capped the number of security reports researchers can keep open at once after AI bug hunting put its review process under pressure, according to the Financial Times.

Some submissions describe hallucinated or purely theoretical risks. Others uncover vulnerabilities serious enough to require patches. Bynario told the FT that it found more than 50 possible macOS flaws in three weeks, including a privilege-escalation chain that could give an attacker full control of a Mac.

Recommended Videos

Every report still needs human verification, although Apple is now using AI to help triage the backlog. Finding possible weaknesses is getting easier. Working out which ones pose an immediate threat has become the harder job.

How real are the AI-found flaws

Bynario has already shown that its system can produce more than automated guesswork. Its Atlas platform used GPT-5.5 to uncover a macOS Screen Sharing flaw that let an authenticated VNC viewer access protected data and create files with root privileges.

The attack required Screen Sharing or Remote Management to be enabled, along with legacy VNC password access. Apple assigned it CVE-2026-43760 and patched it in macOS Tahoe 26.6.

Bynario also demonstrated how the flaw could be extended to run commands as root. That gave Apple a working exploit to investigate rather than another vague warning generated from a code scan.

Why Apple needs the same AI

Apple’s recent security advisories credit researchers working with Claude for a kernel vulnerability. OpenAI Codex Security has also helped identify several WebKit issues.

AI-assisted research is already contributing to fixes shipped for macOS and Safari. Restricting submissions too aggressively could delay useful discoveries, while leaving the gates open risks burying Apple’s team under convincing-looking nonsense.

The bottleneck is verification. Models can generate possible attack paths quickly, but Apple still has to reproduce the behavior, confirm the required conditions and decide how urgently it needs a fix.

Can Apple keep the signal

Apple has redesigned its bug bounty program around stronger evidence. Its maximum payout now exceeds $5 million for the most serious exploit chains, while Target Flags help researchers prove that a flaw reaches protected parts of the system.

That gives Apple a better way to separate demonstrated exploits from automated speculation. Mac users can’t solve the reporting backlog, but they can limit their exposure by installing security updates promptly. AI bug hunting is already finding flaws that reach Apple’s patch queue.

Paulo Vargas
Paulo Vargas is an English major turned reporter turned technical writer, with a career that has always circled back to…
The FCC wants to ban some drones it already approved. Yeah, this is getting complicated.
FCC considers expanding drone restrictions to previously approved DJI models
dji drone

The US Federal Communications Commission is considering a move that could make things pretty awkward for drone buyers. The agency wants to expand its existing restrictions to cover certain drones with features such as LiDAR sensing, thermal imaging, and aerosol-dispersing systems. The weird part? Some of these drones were already approved for sale in the US.

In a report by DJI's own blog, this new development puts several DJI models in the spotlight, including the Air 3S, Avata 360, and Mini 5 Pro. Under the proposal, these drones could potentially be pulled from the US market, even though the FCC had previously cleared them. And no, if you already own one, the government isn't coming to take it away.

Read more
Hoy combines AirDrop, Loom, and voice messages in the Mac menu bar
The pre-release app lets Mac users send files, voice notes, and screen recordings without bouncing between separate tools
Person, Text, Electronics

Hoy wants sending something from your Mac to feel as casual as dropping a file onto someone’s desk. Instead of opening another app, you drag it onto that person’s face sitting in the menu bar.

https://twitter.com/heyiamdk/status/2082151995687748064

Read more
Tech giants are gaga over AI, but employees say the AI race is making their jobs harder
Employees at some of AI’s biggest companies say the AI push is bringing longer hours and heavier workloads
Claude on a MacBook Pro.

Tech companies have spent years promising that AI will help people accomplish more in less time. Inside several companies leading that race, some employees are describing an awkward consequence. More productive tools haven’t necessarily produced shorter working days.

Workers at OpenAI, Anthropic, Meta, and Google told the BBC about punishing schedules and AI projects consuming nights and weekends. The twist is that their employers increasingly have evidence that AI really can help people get more done.

Read more