In a blog post shared by ZDNet, security researcher Vishal Bharad claims that he found a bug that would have allowed a hacker to inject a virus or malicious script onto Apple's iCloud website.
According to Bharad, the vulnerability consisted of creating a Pages or Keynote document on the iCloud website with the name field containing the XSS payload. Sharing the document with another user, creating a change, saving, and then clicking "Browse All Versions" under Settings would have triggered the XSS payload.
Given the vulnerability revolved around the iCloud website, it's not linked to a recent software update and has reportedly been patched by Apple server-side. Bharad says he submitted the issue to Apple on August 7, 2020, and received a $5,000 bounty on October 9, 2020. We've reached out to Apple for comment and we'll update if we hear back.
Wednesday March 11, 2026 7:05 am PDT by Joe Rossignol
Starting today, the seven new Apple products that were announced last week are available at Apple Stores and beginning to arrive to customers.
The colorful MacBook Neo and all of the other new products are on display at most Apple Store locations around the world starting today. Apple Stores have inventory of the new products for both walk-in customers and Apple Store pickup, but...
Thursday March 12, 2026 6:10 am PDT by Joe Rossignol
Apple today announced that it will celebrate the company's 50th anniversary over the coming weeks, but it has yet to reveal any specific plans.
Apple was founded on April 1, 1976, so the company will turn 50 on April 1, 2026.
"While Apple is known for looking forward, this milestone offers a special moment to reflect on the journey that has brought the company here, to celebrate the...
Wednesday March 11, 2026 1:31 pm PDT by Juli Clover
The upcoming foldable iPhone that Apple plans to debut this September will operate like a cross between an iPhone and an iPad, reports Bloomberg.
When the device is opened up, the UI will have an iPad-like layout that supports multitasking with two apps side-by-side. No iPhone to date has supported running multiple apps on the display at the same time, beyond simple picture-in-picture mode...