Apple PCC Vulnerability Allows Root File Writes and Data Leakage

Apple PCC Vulnerability Allows Root File Writes and Data Leakage

First seen 10 Aug 2026, 14:02 UTC GbhackersCybersecuritynewsblog.sentry.security 85% similarity 72.0

Article Content

Browse articles
ThreatCluster

A path traversal vulnerability, CVE-2026-20685, has been discovered in Apple's Private Cloud Compute (PCC), enabling attackers to write files as root during node boot and potentially leak sensitive AI inference telemetry. The flaw affects Apple's cloud-inference infrastructure, which is critical for AI applications. Security researcher Drinor Selmanaj reported the vulnerability and received a $150,000 bounty from Apple. The vulnerability was publicly disclosed on August 10, 2026, along with a proof of concept (PoC). Apple has addressed the issue in PCC Release 5E290.3 and later. The vulnerability poses a significant risk to data integrity and confidentiality in cloud environments. Users of the affected systems are advised to update to the latest release to mitigate risks.

Key Points: • CVE-2026-20685 allows root file writes and telemetry leakage in Apple PCC. • Drinor Selmanaj received a $150,000 bounty for discovering the vulnerability. • Apple has released a patch in PCC Release 5E290.3 to address the flaw.

ThreatCluster AI How this analysis works

Timeline

2026-05-18
CVE-2026-20685 published
Apple disclosed a path traversal vulnerability in its Private Cloud Compute system.
Cybersecuritynews
2026-08-10
Public PoC released
A proof of concept for CVE-2026-20685 was made public, demonstrating the exploit.
Gbhackers
2026-08-10
Vulnerability disclosed
Drinor Selmanaj disclosed the vulnerability, highlighting its impact on Apple's cloud infrastructure.
Cybersecuritynews
2026-08-10
Patch released
Apple addressed the vulnerability in PCC Release 5E290.3 and later versions.
Gbhackers

Community

Browse all →