Apple sent a wave of threat notifications to users worldwide, warning of mercenary spyware attacks, and the alert volume was the largest yet.
Apple has issued an unprecedented wave of security alerts to its global user base, warning of active attempts to deploy mercenary‑grade spyware on iOS devices.
Scale of the alert
Investigators say the number of notifications sent in the latest campaign dwarfs previous Apple alerts, suggesting a coordinated push by state‑linked actors to harvest data from millions of iPhone users.
The alerts appeared as push notifications and in‑app banners, prompting users to install a critical iOS update that patches a zero‑day vulnerability previously unknown to the public.
What the spyware can do
The targeted spyware, identified by security researchers as a variant of Pegasus, can access messages, call logs, microphone, and camera without the user’s knowledge, effectively turning the device into a surveillance tool.
Apple’s emergency patch disables the exploit’s command‑and‑control server communication, rendering the spyware inert on affected devices.
Response from Apple and investigators
Apple’s security team released a statement confirming the urgency of the update and urging all users to install iOS 17.5.2 immediately. The company also pledged to work with law‑enforcement agencies to track the source of the attacks.
Independent cybersecurity firms have corroborated Apple’s findings, noting that the spike in alerts aligns with a broader trend of espionage tools being weaponized against journalists, activists, and political figures worldwide.
- Patch iOS to the latest version immediately
- Avoid clicking suspicious links or installing unknown profiles
- Enable two‑factor authentication for Apple ID
- Monitor device activity for unfamiliar behavior
The collaboration between Apple and external investigators highlights a growing recognition that sophisticated spyware threats require a unified defense strategy across the tech industry.
We have never seen a notification campaign of this magnitude targeting iOS devices before, said a lead analyst at a prominent security firm.
Users who missed the initial alert are still encouraged to check their device settings for any pending updates and to review the security recommendations provided by Apple.