Nine patched Apple flaws surface in a Russian firm’s report

A sanctions-hit Russian vendor says it found nine Apple vulnerabilities and had them patched, without saying which builds carry the fixes.

AppleThreat Staff
2 Min Read

A security vendor that Washington has sanctioned says it found eleven vulnerabilities across Apple and Android products, nine of them inside Apple’s software.

Positive Technologies handed the findings to a Russian news agency, and TechRadar reported them on September 29, 2026. The company sorted the Apple issues under three headings: access rights that could be raised, private data left exposed, and safeguards on stored information that weakened. One of the flaws could bring a device down or corrupt data held in memory.

Both Android bugs concern Pixel hardware. The first let a crafted NFC tag fetch, install and launch an application while the owner approved nothing. The second allowed an app to rewrite Wi-Fi settings without asking for the extra permission. Google closed both in its September 2026 patches.

Patches are out on both sides, yet the vendors stayed silent about the report itself, and Apple declined to say which builds carry its repairs. That leaves owners with no way to read a version number and know whether their hardware is protected. Who made the claim is part of why it traveled: Positive Technologies operates under US sanctions, and its researchers have spent years pulling apart mobile platforms, a record that gave a thin disclosure more weight than its detail alone would earn.

Share This Article