
Apple and Microsoft Security Updates Address Critical Vulnerabilities and Hardware Exploits
On August 18, 2026, the SANS Internet Storm Center released a Stormcast episode covering Apple’s security patches for iOS and macOS, including updates for iOS 18 and iOS 26. The update addressed 108 vulnerabilities, with 87 affecting only the older iOS 18, while six WebKit-related flaws impacted all three operating systems (iOS 18, iOS 26, and macOS). No actively exploited vulnerabilities were identified, though Apple’s Vision OS update lacked disclosed security details. The episode also highlighted a macOS screen-sharing vulnerability, noting that Apple’s implementation of VNC allows system-wide passwords and runs with root privileges, posing risks if misconfigured. Additionally, researchers from the University of Birmingham and Durham University presented a Windows attack called 'Download More RAM,' exploiting writable EEPROMs on RAM sticks to manipulate memory access via a signed overclocking tool, though Microsoft patched the issue in its latest update. The discussion emphasized the importance of disabling unnecessary system processes and properly configuring macOS’s firewall to block open ports.