
Apple Patches iOS Notification Services Flaw That Retained Deleted Encrypted Messages
Apple released out-of-band security updates for iPhone and iPad devices to address a Notification Services flaw that allowed deleted notifications—including those from encrypted messaging apps like Signal—to persist on the device. The bug enabled law enforcement agencies, such as the FBI, to recover these retained notifications, potentially exposing message content even after deletion. The vulnerability affected iOS and iPadOS versions prior to the patch, though no specific CVE ID or exact release date was provided. The flaw specifically impacted the handling of notification data marked for deletion, which remained stored in device memory. No additional technical details about the exploit mechanism or affected hardware models were disclosed.