
Apple Private Cloud Compute Flaw Lets Attackers Write Files as Root
A critical path traversal vulnerability in Apple’s Private Cloud Compute (PCC), the server-side infrastructure powering Apple Intelligence. Tracked as CVE-2026-20685, the flaw earned a $150,000 bounty under the Apple Security Bounty program and was patched in PCC releases 5E290.3 and later. PCC handles Apple Intelligence requests that are too complex for on-device processing, promising iPhone-level […]
The post Apple Private Cloud Compute Flaw Lets Attackers Write Files as Root appeared first on Cyber Security News.