Security researchers Talal Haj Bakry and Tommy Mysk disclosed that Apple’s iCloud Private Relay can be bypassed, allowing websites to learn a user’s real IP address even when Safari’s privacy feature is enabled. The researchers said the leak stems from multiple WebKit behaviors, including WebAuthn flows tied to passkeys, DNS prefetching in iOS 26, and WebTransport in iOS 26.4. Because the issue is rooted in WebKit, the exposure can also affect some third-party browsers on iOS, not just Safari.
The researchers published a blog post and a public test site demonstrating that sites using or even imitating passkey-related prompts can trigger network requests outside Private Relay’s proxied path, exposing the device’s actual IP address and, in some cases, real DNS infrastructure without obvious user interaction. TechCrunch said it verified the leak during testing, while Apple told another outlet it is investigating the report; Private Relay remains an opt-in feature for iCloud+ subscribers and protects Safari traffic rather than providing system-wide coverage like a VPN.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
2 events from the most recent confirmed update back to the earliest known activity.
After the researchers' findings were reported, Apple told 404 Media that it is investigating the report about iCloud Private Relay leaking users' real IP addresses. Separate coverage also noted Apple had not responded to another request for comment at the time of publication.
Security researchers Tommy Mysk and Talal Haj Bakry disclosed that Apple's iCloud Private Relay can be bypassed to reveal a user's real IP address, and they published a website for users to test whether their IP leaks. They said the issue stems from WebKit behavior, including WebAuthn-related requests, with additional leakage paths involving DNS prefetching in iOS 26 and WebTransport in iOS 26.4.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
4 references tracked. Mallory keeps watching after this page renders.
cybersecuritynews.com
Open sourcemacrumors.com
Open sourcetechcrunch.com
Open source404media.co
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.