News / Cybersecurity
Apple fixes a zero-day vulnerability in CoreGraphics, exploited in targeted attacks Published on 28 September 2026 by Christ-loisele (1 min read)
Apple has released patches for a critical vulnerability in CoreGraphics, used in targeted attack campaigns. The updates affect multiple operating systems, including iOS and macOS, with no public details on the associated CVEs.
A zero-day vulnerability exploited in targeted attacks
Apple has fixed a zero-day vulnerability in CoreGraphics, a key component of its operating systems, which reportedly was exploited to target specific individuals on versions prior to iOS 27. According to TidBITS , this vulnerability allowed a malicious file to trigger arbitrary code execution. Apple’s update notes specify that « processing a malicious file could lead to arbitrary code execution » via CoreGraphics, without mentioning a CVE number.
Processing a malicious file could lead to arbitrary code execution via CoreGraphics, a direct threat to unpatched systems.
Illustration: Lawing Tech
Massive updates without transparency on vulnerabilities
The fixes were rolled out simultaneously for iOS 27.0.1, iPadOS 27.0.1, macOS 27.0.1, watchOS 27.0.1, and visionOS 27.0.1, but Apple did not publish detailed security notes for all versions. Only the macOS 26.7 Tahoe and macOS 15.8 Sequoia updates include explicit security corrections, addressing 154 and 155 vulnerabilities respectively, according to TidBITS . This lack of transparency contrasts with the severity of the flaw, which was exploited in targeted attacks.
What this changes here
For businesses and government agencies in Benin and West Africa, this vulnerability underscores the importance of keeping systems updated, especially on critical devices such as servers or workstations handling sensitive data. Targeted attacks, often linked to advanced groups like those mentioned in the Pegasus context, could exploit similar flaws to compromise local infrastructure. Strengthened update governance and proactive vulnerability monitoring, particularly through threat detection tools, would then become essential to mitigate risks.
Sources