AirDrop and Quick Share nearby crash and session-bypass flaws security flaw
Vulnerability
Summary
Hide ▲
Show ▼
Nearby attackers can crash AirDrop and bypass Quick Share session checks, exposing Apple, Samsung, and Google Windows file-sharing stacks to local disruption and possible exploitation. The flaws reach sharingd on macOS and iOS, and one issue sits in Google's Quick Share for Windows memory handling. Attackers need wireless proximity or the same local network, but they do not need prior pairing or user interaction. Apple has patched one bug and Google has landed a Windows fix, while the rest remain under coordinated disclosure.
Related Happenings
Google Dialogflow CX Code Blocks shared-runtime isolation security flaw
Vulnerability
H score32
First: 07.07.2026 19:37
Last: 07.07.2026 19:37
Sources 1
About this happening:
Google Dialogflow CX Code Blocks had a shared-runtime isolation flaw that could let one editable agent affect other Code Block-enabled agents in the same Google Cloud pr...
Google Dialogflow CX Code Blocks shared-runtime isolation security flaw
VulnerabilityAbout this happening: Google Dialogflow CX Code Blocks had a shared-runtime isolation flaw that could let one editable agent affect other Code Block-enabled agents in the same Google Cloud pr...
Apple A12/A13 SecureROM USB DMA underflow with public usbliter8 exploit security flaw
Vulnerability
H score0
First: 19.06.2026 21:37
Last: 19.06.2026 21:37
Sources 1
About this happening:
A public usbliter8 exploit now reaches arbitrary code execution in Apple's SecureROM, exposing an unpatchable USB DMA underflow flaw across A12, A13, S4, and S5*...
Apple A12/A13 SecureROM USB DMA underflow with public usbliter8 exploit security flaw
VulnerabilityAbout this happening: A public usbliter8 exploit now reaches arbitrary code execution in Apple's SecureROM, exposing an unpatchable USB DMA underflow flaw across A12, A13, S4, and S5*...
Google rolls out Android Intrusion Logging in Android Advanced Protection Mode
Security Tool/Service
H score10
First: 14.05.2026 16:30
Last: 14.05.2026 16:30
Sources 1
About this happening:
Google has released Android Intrusion Logging for Android Advanced Protection Mode, giving high-risk Android users encrypted forensic logs to investigate suspected s...
Google rolls out Android Intrusion Logging in Android Advanced Protection Mode
Security Tool/ServiceAbout this happening: Google has released Android Intrusion Logging for Android Advanced Protection Mode, giving high-risk Android users encrypted forensic logs to investigate suspected s...
Android 17 expands platform security and privacy protections
Security Tool/Service
H score15
First: 12.05.2026 20:00
Last: 12.05.2026 20:00
Sources 1
About this happening:
Android 17 will add a broad set of Google-backed security and privacy controls next month, reducing exposure to banking scam calls, device theft, and OTP theft...
Android 17 expands platform security and privacy protections
Security Tool/ServiceAbout this happening: Android 17 will add a broad set of Google-backed security and privacy controls next month, reducing exposure to banking scam calls, device theft, and OTP theft...
Apple iOS and iPadOS 26.4 Beta adds RCS end-to-end encryption and new device protections
Security Tool/Service
H score26
First: 17.02.2026 08:44
Last: 17.02.2026 08:44
Sources 1
About this happening:
Apple’s iOS and iPadOS 26.4 Beta now tests end-to-end encryption (E2EE) for RCS messages, strengthening message confidentiality for Apple users. The same beta also exp...
Apple iOS and iPadOS 26.4 Beta adds RCS end-to-end encryption and new device protections
Security Tool/ServiceAbout this happening: Apple’s iOS and iPadOS 26.4 Beta now tests end-to-end encryption (E2EE) for RCS messages, strengthening message confidentiality for Apple users. The same beta also exp...
Timeline
-
30.06.2026 12:27 1 articles · 15d ago
Apple ships iOS and macOS 26.5.2 with one AirDrop fix
Mitigation Patch UpdateApple ships iOS and macOS 26.5.2 on June 29 after patching one AirDrop bug and assigning it a CVE, while the other two AirDrop issues remain in coordinated disclosure.
Show sources
- AirDrop and Quick Share Flaws Let Nearby Attackers Trigger Crashes and Bypass Checks — thehackernews.com — 30.06.2026 12:27
-
30.06.2026 12:27 2 articles · 15d ago
Researchers uncover six AirDrop and Quick Share flaws
Initial DisclosureResearchers at CISPA Helmholtz Center identify six security flaws in AirDrop and Quick Share that let a nearby attacker with only a laptop crash sharingd on macOS and iOS, bypass Samsung session checks, and trigger a potentially exploitable crash in Google's Quick Share for Windows; the tested bugs hit specific implementations and versions, and no public exploitation has been reported.
Show sources
- AirDrop and Quick Share Flaws Let Nearby Attackers Trigger Crashes and Bypass Checks — thehackernews.com — 30.06.2026 12:27
- AirDrop and Quick Share Flaws Let Nearby Attackers Trigger Crashes and Bypass Checks — thehackernews.com — 30.06.2026 12:27