A now corrected issue let researchers circumvent Apple’s restrictions and force the on-device LLM to execute attacker-controlled actions.
Most people rewrite prompts — I use this one-line trick instead. “Add the cheese” makes AI responses better instantly.
Some results have been hidden because they may be inaccessible to you
Show inaccessible results