Apple is testing a new security feature in iOS 26.6 that warns users about potentially malicious iMessages and offers a direct way to report them to the company.
Code discovered in iOS 26.6 beta 5 reveals a “Malicious Message Detected” alert that appears when Apple’s systems flag an incoming message as potentially harmful. The pop-up gives users three options: “Not Now,” “Share With Apple,” and “Don’t Report.” Choosing to share sends the suspicious message to Apple for investigation.
The feature builds on years of iMessage hardening. Apple introduced the BlastDoor sandbox in iOS 14 to isolate message processing from the rest of the operating system, but attackers found ways around it. A 2021 zero-click iMessage exploit bypassed BlastDoor entirely to install NSO Group’s Pegasus spyware on targeted devices.
Apple later added Lockdown Mode, iMessage Contact Key Verification, and spam filtering. The new warning adds a visible alert layer on top of those protections, telling users when Apple believes a specific message poses a threat.
The feature could prove especially valuable for journalists, activists, and politicians who face elevated risks from targeted spyware campaigns. However, the alert’s resemblance to fake Safari scam pop-ups may create confusion, and IT teams may need to train employees on recognizing the official warning.
iOS 26.6 has completed five beta cycles and is expected to ship publicly by the end of July.