Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
Apple Devices: Local attacker can access user's Keychain items
CVE-2026-28864
Summary
Some Apple devices are at risk of an attacker gaining access to sensitive user data, such as passwords and credit card numbers, if they have the device in their possession. This is a serious security risk, and affected users should update their devices as soon as possible to the latest available software versions. Regularly updating your device will help protect your personal data.
Original title
This issue was addressed with improved permissions checking. This issue is fixed in iOS 18.7.7 and iPadOS 18.7.7, iOS 26.4 and iPadOS 26.4, macOS Sequoia 15.7.5, macOS Sonoma 14.8.5, macOS Tahoe 26...
Original description
This issue was addressed with improved permissions checking. This issue is fixed in iOS 18.7.7 and iPadOS 18.7.7, iOS 26.4 and iPadOS 26.4, macOS Sequoia 15.7.5, macOS Sonoma 14.8.5, macOS Tahoe 26.4, visionOS 26.4, watchOS 26.4. A local attacker may gain access to user's Keychain items.
Published: 25 Mar 2026 · Updated: 25 Mar 2026 · First seen: 25 Mar 2026