VulnerabilitiesHIGH

Apple Issues Lock Screen Warnings for Unpatched Devices

SASecurity Affairs
iOSCorunaDarkSwordAppleiPadOS
🎯

Basically, Apple is warning users to update their devices to avoid hackers stealing data.

Quick Summary

Apple is alerting users of outdated iPhones and iPads about serious web-based threats. If you haven't updated your device, your data could be at risk. Act now to secure your information!

What Happened

Apple has taken a proactive step to inform users of outdated iPhones and iPads about potential threats. They are sending urgent lock screen notifications to users running older versions of iOS and iPadOS. These alerts warn that active web-based exploits are targeting their devices, urging immediate software updates to safeguard against these vulnerabilities.

The notifications appear as a "Critical Software" alert, indicating that Apple is aware of attacks specifically targeting older iOS versions. The company has identified exploit kits like Coruna and DarkSword that can compromise devices running iOS versions from 13.0 to 17.2.1. Users are being strongly encouraged to install critical updates to protect their data and devices.

Who's Affected

The lock screen warnings are being sent to a wide range of users, particularly those still operating on outdated iOS versions. This includes devices running iOS 13 through 17.2.1, which are now at risk due to the ongoing exploitation of vulnerabilities. Apple has highlighted that simply clicking on a malicious link or visiting a compromised site could lead to serious data breaches for those who do not update.

Users of iOS 15 and later versions are generally safe if they have installed the latest updates. However, those on older versions, especially iOS 13 and 14, must upgrade to iOS 15 to receive critical security updates. The urgency is clear: failure to update leaves devices vulnerable to sophisticated attacks.

Patch Status

Apple has been quick to respond to the identified vulnerabilities. They released software updates on March 11, 2026, which extend protection to devices running iOS 15 and 16. However, users on older versions like iOS 13 and 14 must take action to upgrade to iOS 15 and install critical updates.

Additionally, Apple has implemented features such as Safari’s Safe Browsing, which helps block known malicious domains by default. This is an essential layer of protection, but it is not a substitute for updating the operating system itself. Users must prioritize these updates to ensure their devices are secure against threats.

Immediate Actions

To protect your device and data, users should take the following actions:

  • Update your iOS: Ensure your device is running the latest version of iOS. If you’re on iOS 13 or 14, upgrade to iOS 15 immediately.
  • Enable Lockdown Mode: This feature can help block potential attacks, even on older systems.
  • Be cautious online: Avoid clicking on suspicious links or visiting untrusted websites, especially if your device is not updated.

Staying informed and proactive is crucial in today’s digital landscape. Keeping your iPhone or iPad updated is the most effective way to safeguard your personal information against evolving threats like Coruna and DarkSword.

🔒 Pro insight: The emergence of exploit kits like Coruna indicates a significant escalation in targeting outdated iOS versions, necessitating immediate user action.

Original article from

SASecurity Affairs· Pierluigi Paganini
Read Full Article

Related Pings

HIGHVulnerabilities

libfuse io_uring Vulnerabilities - Critical Memory Flaws Found

Two critical memory safety vulnerabilities were discovered in libfuse's io_uring code path. These flaws could lead to crashes or arbitrary code execution. Immediate updates are advised.

Full Disclosure·
HIGHVulnerabilities

MailEnable Vulnerabilities - Multiple XSS Flaws Discovered

MailEnable has multiple reflected XSS vulnerabilities in versions 10.54 and earlier. Users are at risk of arbitrary script execution. Upgrade to version 10.55 to stay protected.

Full Disclosure·
HIGHVulnerabilities

macOS Tahoe 26.4 - Critical Security Updates Released

Apple has rolled out macOS Tahoe 26.4, fixing critical security vulnerabilities. Users could be at risk of data interception and unauthorized access. Update your system now to stay protected!

Full Disclosure·
HIGHVulnerabilities

Dovecot Security Advisory - Multiple Vulnerabilities Fixed

Dovecot has released a security advisory addressing multiple vulnerabilities. Users of Dovecot Pro and CE versions must update to prevent potential exploits. This advisory highlights critical flaws affecting user authentication and data integrity.

Full Disclosure·
HIGHVulnerabilities

Apple's tvOS 26.4 - Critical Security Updates Released

Apple has rolled out tvOS 26.4, fixing multiple serious vulnerabilities. Users of Apple TV HD and 4K need to update immediately to safeguard their devices against potential attacks. This update is crucial for maintaining device security.

Full Disclosure·
HIGHVulnerabilities

iOS 26.4 - Critical Security Updates Released

Apple has released critical updates for iOS and iPadOS. These updates fix serious vulnerabilities affecting many devices. Users must update to protect their data and maintain security.

Full Disclosure·