Skip to main content

This major Apple bug could let hackers steal your photos and wipe your device

Apple’s macOS and iOS are often considered to be more secure than their rivals, but that doesn’t make them invulnerable. One security team recently proved that by showing how hackers could exploit Apple’s systems to access your messages, location data, and photos — and even wipe your device entirely.

The discoveries were published on the blog of security research firm Trellix, and will be of major concern to iOS and macOS users alike, since the vulnerabilities can be exploited on both operating systems. Trellix explains that Apple patched the exploits in macOS 13.2 and iOS 16.3, which were released in January 2023, so you should update your devices as soon as you can.

A physical lock placed on a keyboard to represent a locked keyboard.
piranka / Getty Images

Apple protects its systems by requiring apps to be signed by approved developers, by sandboxing apps to prevent them from accessing areas they should not, and by almost entirely removing the ability to dynamically run arbitrary code. Combined, those measures help macOS and iOS become highly secure — but apparently not secure enough.

Recommended Videos

Trellix’s blog post explains that the infamous cyberintelligence organization NSO Group bypassed some of these protections in 2021 by exploiting Apple’s NSPredicate system. In short, NSPredicate is one of the few elements of macOS and iOS that can dynamically generate code — something that was thought to be absent from Apple’s operating systems. NSO Group discovered this and used it to craft its Pegasus spyware.

Please enable Javascript to view this content

This exploit was dubbed FORCEDENTRY, and Apple patched it shortly after its discovery in late 2021. Trellix’s work, however, has shown that Apple’s patches can be easily bypassed, rendering them useless.

In fact, Trellix claims it has found an entire class of bugs that can be exploited this way, granting hackers access to a user’s calendar, address book, photos, camera, microphone, and more. Some bugs could even be used to wipe your device in its entirety.

Trellix passed on the details of the exploits it discovered to Apple, and they were patched earlier this year. That means you should download the fixes — contained in macOS 13.2 and iOS 16.3 and later versions — as soon as you can. These exploits also serve as a helpful reminder that, despite the company’s reputation for strong security, no Apple product is invulnerable to attack. Ensuring your device is up to date is a great way to keep it safe.

Alex Blake
Alex Blake has been working with Digital Trends since 2019, where he spends most of his time writing about Mac computers…
Apple just launched the iOS 18.1 public beta. Here’s how it’ll change your iPhone
Someone holding an iPhone 15 Pro Max outside on a patio, showing the back of the Natural Titanium color.

This week is quickly shaping up to be a huge one for Apple fans. On Monday, Apple officially released iOS 18, watchOS 11, and macOS 15 to the general public. Tomorrow, regular sales begin for the new iPhone 16, iPhone 16 Pro, and Apple Watch Series 10. As if that weren't enough, Apple is now rolling out its first public betas with Apple Intelligence features.

Starting today, September 19, the public betas for iOS 18.1, iPadOS 18.1, and macOS 15.1 are available for anyone to download. The main draw to these public betas is that they all include Apple Intelligence features, which were previously locked to the developer betas for these software versions.

Read more
Apple’s big iOS 18 update is now available for your iPhone
Siri being shown on an iPhone 15 Pro on iOS 18.

The wait is finally over -- iOS 18 is here. If you have a compatible iPhone (and the list is expansive), make sure to grab it now by simply going to Settings > General > Software Update. If you don’t see it just yet, keep checking as it continues to roll out for everyone.

iOS 18 is a big update for the iPhone, as it finally catches Apple up to competitors with Apple Intelligence, its suite of AI-powered tools. However, because of processing power, Apple Intelligence features require at least an iPhone 15 Pro or iPhone 15 Pro Max. All iPhone 16 devices, which will launch on Friday, will have access to Apple Intelligence. However, Apple has said that Apple Intelligence isn’t officially launching until iOS 18.1, which will be released in October.

Read more
Your iPhone and Apple Watch are getting huge software updates today
An iPhone home screen with iOS 18.

In June, Apple announced new software features for some of its most popular devices, including the iPhone and Apple Watch. Today, everyone with supported devices will receive the iOS 18 and watchOS 11 updates.

Apple has not officially announced the exact timing for today's new software updates, but they typically follow a consistent process for each update. It looks like iOS 18 and watchOS 11 will likely be released at 10 a.m. PT/1 p.m. ET. In addition to these updates, Apple will release iPadOS 18, macOS Sequoia, and visionOS 2.

Read more