Apple releases urgent iOS update to fix notification flaw that exposed deleted messages

Apple

Apple - Kittyfly / Shutterstock.com

Apple has released a security update for iPhones and iPads. The patch fixes a flaw in the notification system that kept data even after deletion. Usuários must be installed as soon as possible.

The issue involved notifications marked as deleted that remained in the device’s internal database. Isso allowed access to message previews from applications like Signal. The correction arrived urgently.

Apple, phone – JarTee/shutterstock.com

Falha allowed data retention on deleted notifications

The vulnerability was related to the push notification service. Notificações that should be removed remained stored locally for up to a month in some cases. Autoridades managed to extract information even with the app deleted and messages configured to disappear.

The case gained visibility after a report revealed the use by investigators in a legal case of Estados Unidos. The device had notifications set to display full content on the lock screen. Isso saved text to the iOS internal bank. The flaw has been identified as CVE-2026-28950.

  • Atualização available for iPhone 11 and newer models
  • Compatível with iPad Pro from 3rd generation 12.9 inch
  • Também covers iPad Air from 3rd generation onwards
  • Inclui 8th generation iPad and 5th generation iPad mini

Atualizações released in two main versions

Apple has released iOS 26.4.2 and iPadOS 26.4.2 for newer devices. Previous Versões have iOS 18.7.8 and iPadOS 18.7.8. The patch adds a correct registry removal step. Signal confirmed that the installation resolves the issue for past and future messages.

The company did not detail the exact reason for the urgency in the official statement. The timing followed reports about data extraction in investigations. Usuários with preview notifications enabled was more exposed.

The patch corrects the implementation in the data register. Antes, deleting did not completely clear the internal history. Agora, the process includes appropriate redaction of information.

Recomendações for greater privacy protection

Especialistas suggest simple adjustments in addition to the update. Desative content preview in sensitive app notifications. Isso reduces what is saved locally even with the bug fixed. Verifique the settings of each messenger.

Mantenha the device updated whenever new security versions appear. Apple usually releases isolated patches for critical issues. In the current case, action was swift after the problem was publicly exposed.

What changes with the correction applied

Updated Dispositivos no longer retains deleted notifications in the database. Isso strengthens privacy in encrypted messaging apps. Signal, for example, had already asked Apple for a direct correction. The company responded with the patch.

Usuários must restart the device after installing to ensure complete application. The update does not bring any new interface or features. Foco total security.

Impacto for those who use secure communication apps

Muitos users trust platforms like Signal because of automatic disappearing messages. The previous failure created a gap in this model. With the patch, the expected behavior returns to full effect.

Electronic Frontier Foundation followed the case and highlighted the importance of the correction. Autoridades used forensic tools to access the notification bank. Agora, this vector is closed.