Beautiful Virgin Islands

Saturday, Mar 14, 2026

IOS is secure? Never was. Hackers breached iPhone users data for years

Cybercriminals implanted iPhones with spyware by exploiting a hole in Apple's operating system

Hackers planted spyware on iPhone users' devices over a two-year period by exploiting a vulnerability in the technology's operating systems, Google said Friday.

The bad actors targeted a group of infected websites that, when visited by iPhone users, attacked the devices and in some cases installed malware, according to Ian Beer of Project Zero, a team of Google security analysts that investigates cybercrime.

"There was no target discrimination; simply visiting the hacked site was enough for the exploit server to attack your device, and if it was successful, install a monitoring implant. We estimate that these sites receive thousands of visitors per week," Beer wrote in a blog post.

Using the implant, hackers could access Apple customers' data, including their passwords and personal contacts, as well as messages sent through iMessage, WhatsApp, Gmail and Google Hangouts, according to Project Zero researchers.

Almost every version of Apple's iPhone operating system — from iOS 10 through to the latest version of iOS 12 — was vulnerable, he said. Still, it's unclear how many users might have been affected.


Old bug, new hack

The security bugs Beer identified aren't new, but rather were exploited in novel ways.

"Ian shows this is the first time these types of vulnerabilities have been used out on the wide internet, where if the malicious code was present on a certain website that was accessed, the unsuspecting user would be infected, and remain blissfully ignorant of it," said operating system internals researcher Jonathan Levin.

In this case, no user intervention, such as a prompt to click on a link, was required for an iPhone to get inflected.

The scope of the hack suggests it was backed by a nation rather than an individual, Levin said. "It requires a lot of research, and there has to be an endgame motive for this," he told CBS MoneyWatch. "It's possible that those behind the hack targeted a specific demographic or interest groups."

"My personal hunch, because of the level of proficiency and efficacy of the exploits, is that this is not the work of your average hacker," he added.

Neither is there a sure-fire way for users to protect themselves against security breaches, Beer said. "All that users can do is be conscious of the fact that mass exploitation still exists and behave accordingly; treating their mobile devices as both integral to their modern lives, yet also as devices which when compromised, can upload their every action into a database to potentially be used against them."

Google said it reported its findings to Apple in February, after which the tech giant released an updated operating system to fix the flaws.


Android's no safer

While Beer highlights some of the iPhone's vulnerabilities, the attack shouldn't be misread to suggest that Google's Android operating system is safer, Levin said.

"The takeaway shouldn't be, 'I'm going to use Android from now on because it's more secure.' That's far from it," he said. "Similar and/or possibly worse bugs exist in Android and other operating systems as well. Google Project Zero simply chose to highlight iOS this time."

Apple claims to be the most secure operating system, and for good reason. "Apple genuinely invests extreme efforts in securing iOS on multiple layers, down to their proprietary hardware, and in some aspects are still way ahead of Android," Levin said.

Newsletter

Related Articles

Beautiful Virgin Islands
0:00
0:00
Close
Weak Growth Signals UK Economy Was Faltering Even Before Middle East Energy Shock
Marks & Spencer Tops UK Fashion Retail Rankings as Most Considered Brand
United States Launches Trade Investigation Into Allies Over Forced Labour Practices
United States Launches Trade Investigation Into Allies Over Forced Labour Practices
Russia Accuses Britain Over Storm Shadow Strike as London Reaffirms Ukraine’s Right to Self-Defence
Russia Accuses Britain Over Storm Shadow Strike as London Reaffirms Ukraine’s Right to Self-Defence
Royal Navy to Acquire Twenty Uncrewed Surface Vessels for Autonomous Warfare Testing
Russia Summons British and French Envoys After Ukrainian Storm Shadow Strike on Strategic Facility
Starmer Confirms Britain Will Maintain Sanctions on Russia Despite U.S. Policy Shift
UK Moves to Refine AI Definition in Investment Security Reform
UK Economy Stalls in January as Growth Unexpectedly Falls to Zero
Asian Energy Security Tested as Strait of Hormuz Disruption Threatens Oil Supplies
Iran Sets Three Conditions for Ending Regional War as Diplomatic Efforts Intensify
Tesla Secures Approval to Supply Electricity Directly to Homes Across Britain
Prince William Delivers Tribute to Australia’s Naval Alliance Amid Renewed Royal Spotlight on the Country
UK Foreign Secretary Travels to Saudi Arabia to Reinforce Support for Regional Allies
Putin’s ‘Hidden Hand’ May Be Assisting Iran in Conflict With Trump, UK Defence Secretary Warns
UK Sets April Deadline for Tech Platforms to Strengthen Online Protections for Children
Elon Musk Moves Into Britain’s Energy Market as Tesla Wins Licence to Supply Power
UK Watchdog Warns Fuel Retailers Against Profiteering Amid Iran War Price Surge
Report Claims Iran Used UK Charity Network to Expand Influence
United States and United Kingdom Establish Joint Standards for Counter-Drone Technology
Iran May Be Laying Naval Mines in Strait of Hormuz, UK Warns Amid Escalating Gulf Tensions
US Deploys Bunker-Buster Bombs to UK Airbase as Iran Conflict Intensifies
British Troops in Iraq Intercept Iranian Drones Targeting Coalition Base
Release of Mandelson Files Raises Tensions as UK Seeks Stable Relations With Donald Trump
UK Documents Reveal Starmer Was Warned About Mandelson’s Epstein Links Before Ambassador Appointment
Nearly Five Hundred UK Mortgage Deals Withdrawn in Two Days as Market Volatility Forces Lenders to Reprice
Three Cargo Ships Hit Near Iran as Attacks Spread to Strategic Strait of Hormuz
Why British Police Repeatedly Declined to Investigate Jeffrey Epstein’s UK Links
UK Parliament Ends Hereditary Seats in House of Lords, Closing Chapter on Centuries of Aristocratic Lawmaking
EU and UK Urge Israel to Act Against Rising West Bank Settler Violence Amid Regional Tensions
US Senator John Kennedy Says Keir Starmer Should Not Be Trusted for Military Advice Amid Iran War Debate
UK High Court Rejects Attempt to Revive Terrorism Charge Against Kneecap Rapper
Revolut Secures Full UK Banking Licence After Multi-Year Regulatory Wait
Kentucky’s Bench Boost Powers Wildcats Past LSU in SEC Tournament Opener
British Couple Die After Being Pulled From Water at Australian Beach During Family Visit
British Airways Suspends UK Repatriation Flights as Middle East Travel Disruption Deepens
US Forces Prepare Ordnance at RAF Fairford as Strategic Bombers Deploy for Middle East Operations
Nigel Farage Faces Criticism After Saying Britain Should Stay Out of Iran War
Landmark UK Trial Begins Over Sony’s PlayStation Store Pricing
UK High Court Rejects Bid to Challenge Britain’s Chagos Islands Agreement With Mauritius
Finnish Duo Triumphs in England’s Annual Wife-Carrying Race, Winning a Barrel of Ale
How U.S. and UK National Security Strategies Are Reshaping the Global Business Landscape
Green Party Gains Momentum as Labour Shifts Toward the Political Centre
Royal Navy Destroyer HMS Dragon Sets Sail for Eastern Mediterranean as Regional Tensions Rise
UK Homebuilder Persimmon Warns Iran Conflict Could Dent Property Buyer Confidence
Roman Abramovich Signals Legal Fight if UK Seeks to Seize Chelsea Sale Funds
UK Ready to Back Emergency Oil Reserve Release as Middle East Conflict Pushes Prices Higher
Study of 40,000 Articles Sparks Debate Over Alleged Anti-Muslim Bias in UK Media
×