<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>CoreGraphics &#8211; mylogs.cn</title>
	<atom:link href="https://mylogs.cn/tag/coregraphics/feed/" rel="self" type="application/rss+xml" />
	<link>https://mylogs.cn</link>
	<description>发现、记录、分享</description>
	<lastBuildDate>Mon, 28 Sep 2026 22:59:27 +0000</lastBuildDate>
	<language>zh-Hans</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	
	<item>
		<title>AI 加速黑客工具，苹果紧急提速安全更新</title>
		<link>https://mylogs.cn/ai-%e5%8a%a0%e9%80%9f%e9%bb%91%e5%ae%a2%e5%b7%a5%e5%85%b7%ef%bc%8c%e8%8b%b9%e6%9e%9c%e7%b4%a7%e6%80%a5%e6%8f%90%e9%80%9f%e5%ae%89%e5%85%a8%e6%9b%b4%e6%96%b0/</link>
		
		<dc:creator><![CDATA[steve, zhang]]></dc:creator>
		<pubDate>Mon, 28 Sep 2026 22:59:27 +0000</pubDate>
				<category><![CDATA[科技]]></category>
		<category><![CDATA[AI安全]]></category>
		<category><![CDATA[CoreGraphics]]></category>
		<category><![CDATA[macOS]]></category>
		<category><![CDATA[安全漏洞]]></category>
		<category><![CDATA[系统更新]]></category>
		<category><![CDATA[苹果]]></category>
		<guid isPermaLink="false">https://mylogs.cn/ai-%e5%8a%a0%e9%80%9f%e9%bb%91%e5%ae%a2%e5%b7%a5%e5%85%b7%ef%bc%8c%e8%8b%b9%e6%9e%9c%e7%b4%a7%e6%80%a5%e6%8f%90%e9%80%9f%e5%ae%89%e5%85%a8%e6%9b%b4%e6%96%b0/</guid>

					<description><![CDATA[苹果公司近日向 Mac 用户推送了三版系统更新：面向最新机的 macOS 27.0.1（Golden Gate [&#8230;]]]></description>
										<content:encoded><![CDATA[<figure data-wp-context="{&quot;imageId&quot;:&quot;6abb529eb6991&quot;}" data-wp-interactive="core/image" data-wp-key="6abb529eb6991" class="wp-block-image wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on--click="actions.showLightbox" data-wp-on--load="callbacks.setButtonStyles" data-wp-on--pointerdown="actions.preloadImage" data-wp-on--pointerenter="actions.preloadImageWithDelay" data-wp-on--pointerleave="actions.cancelPreload" data-wp-on-window--resize="callbacks.setButtonStyles" src="https://mylogs.cn/wp-content/uploads/2026/09/7f7b36a74cc30b9ab8b00df31179d7f4_header.webp" alt="苹果 macOS 系统更新界面" title="图片来源：IT之家" style="max-width:100%;height:auto;"/><button
			class="lightbox-trigger"
			type="button"
			aria-haspopup="dialog"
			data-wp-bind--aria-label="state.thisImage.triggerButtonAriaLabel"
			data-wp-init="callbacks.initTriggerButton"
			data-wp-on--click="actions.showLightbox"
			data-wp-style--right="state.thisImage.buttonRight"
			data-wp-style--top="state.thisImage.buttonTop"
		>
			<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewBox="0 0 12 12">
				<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z" />
			</svg>
		</button></figure>
<p class="wp-block-paragraph">苹果公司近日向 Mac 用户推送了三版系统更新：面向最新机的 macOS 27.0.1（Golden Gate）、上一代 macOS Tahoe 26.7.1，以及更早的 macOS Sequoia 15.8.1。其中 macOS 27.0.1 是本月早些时候 macOS 27 正式发布以来的首个更新，距上一正式版间隔约两周，用户可通过「系统设置—软件更新」分批获取。</p>
<h2 class="wp-block-heading">新版修复了什么</h2>
<p class="wp-block-paragraph">苹果表示，macOS 27.0.1 Golden Gate「没有已发布的 CVE 条目」，主要修复了一些未指明的错误。真正的安全内容集中在另外两版上：macOS Tahoe 26.7.1 与 macOS Sequoia 15.8.1 修复了 CoreGraphics 图形框架中的一个越界写入漏洞，编号为 CVE-2026-86950。</p>
<p class="wp-block-paragraph">该漏洞由 Meta 产品安全团队发现并报告，CVSS 评分达 8.8（高危）。其影响在于：处理恶意构造的文件可能导致任意代码执行。苹果同时确认，已收到报告称该问题可能已被用于针对特定目标用户的「极其复杂的攻击」，攻击对象为 iOS 27 之前的 iOS 版本。修复方式是通过改进边界检查，解决越界写入问题。</p>
<h2 class="wp-block-heading">AI 正在改写安全更新的节奏</h2>
<p class="wp-block-paragraph">本次更新最值得关注的，并非某个单一漏洞，而是苹果首次在公开语境中承认：人工智能工具的日益强大，正在直接影响其安全更新的发布节奏。</p>
<p class="wp-block-paragraph">苹果方面称，由于 AI 能够加速恶意黑客工具的开发，这缩短了「从发布修复程序到用户实际收到修复」之间苹果希望保留的时间窗口。今年 6 月，苹果就曾表示，因上述原因，将原计划在 26.6 版本中修复的漏洞提前发布。</p>
<p class="wp-block-paragraph">换句话说，过去安全团队可以按照既定的版本周期排布补丁，而现在攻防两端都因 AI 提速——攻击者更快写出利用代码，厂商也不得不更快地推出修复。这种「以快打快」的态势，正成为操作系统厂商普遍面临的新常态。</p>
<h2 class="wp-block-heading">升级建议</h2>
<p class="wp-block-paragraph">对于仍在使用 macOS Tahoe 或 macOS Sequoia 的用户，建议尽快完成 26.7.1 / 15.8.1 的安全更新；运行 macOS 27 的用户则可正常获取 27.0.1。若暂时未看到更新提示，通常是由于区域服务器缓存差异，半小时内多会刷新。考虑到 CVE-2026-86950 已被指存在针对性利用，及时更新是降低风险的直接手段。</p>]]></content:encoded>
					
		
		
			</item>
	</channel>
</rss>
