Apple and Google have begun rolling out end-to-end encrypted Rich Communication Services (RCS) messaging for cross-platform chats between iPhone and Android users, bringing stronger privacy protections to a protocol intended to replace traditional SMS. The beta rollout applies to iPhones running iOS 26.5 on supported carriers and Android devices using the latest Google Messages, with encryption enabled by default and expanding over time to new and existing RCS conversations.
The feature is based on GSMA RCS Universal Profile 3.0 and uses the Messaging Layer Security (MLS) protocol, which is designed to prevent Apple, Google, and carriers from reading message contents while they are in transit. Availability still depends on carrier support and updated client software, so encrypted RCS will not reach all users immediately, and privacy advocates noted that metadata may still be exposed and cloud backups may remain unencrypted unless users enable additional protections such as Apple Advanced Data Protection.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
2 events from the most recent confirmed update back to the earliest known activity.
Apple released iOS 26.5 with support for end-to-end encrypted Rich Communication Services messaging, enabling encrypted chats between Apple Messages and Google Messages where carriers and software versions support it.
Google and Apple announced that end-to-end encrypted RCS messaging began rolling out in beta for cross-platform conversations between iPhone and Android users. The rollout applies to supported iPhone users on iOS 26.5 and Android users on the latest Google Messages, with encryption enabled by default over time.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
3 references tracked. Mallory keeps watching after this page renders.
eff.org
Open sourceblog.google
Open sourceapple.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.