Wordr

Apple Fixes Hide My Email Vulnerability After Months of Delay

· news

Apple Fixes Hide My Email Vulnerability After Months of Delay

The news that Apple has patched a vulnerability in its iCloud+ “Hide My Email” feature should bring some relief to users concerned about online privacy. However, the story behind this fix reveals a deeper issue within tech companies’ commitment to user security.

Introduced in 2021, Hide My Email generates a dummy email address that can be shared publicly without revealing the user’s actual contact information. But reports suggest Apple was aware of the vulnerability as far back as June 2025 – and took until July 3 to deploy a patch.

The delay is concerning given Apple’s reputation for prioritizing user privacy. Tech giants often tout their dedication to protecting users’ data, only to have those promises undermined by subsequent revelations. This incident raises questions about Apple’s values: Is the vulnerability just a minor hiccup in its otherwise stellar record on user security, or is there something more sinister at play?

Tyler Murphy, co-founder of EasyOptOuts, first brought the issue to Apple’s attention and was met with repeated assurances that the problem would be fixed. When it became clear that this wasn’t the case, Murphy took his findings to 404 Media – highlighting trust issues between tech companies and their users.

A proposed class action lawsuit against Apple alleges “deceptive conduct,” suggesting some users are taking a closer look at the fine print. This incident serves as a reminder of the ongoing cat-and-mouse game between tech companies and their users, where patches may be deployed to fix vulnerabilities but trust and accountability have been eroded in the process.

The question on everyone’s mind should now shift from “Is Apple trustworthy?” to “Can we trust our data with these companies at all?” The answer is not as straightforward as one might hope. It’s time for tech giants to take a hard look at their own practices and acknowledge the vulnerabilities that exist within their systems – before they become the next major headache.

The impact of this vulnerability goes beyond just Apple, though. As we continue down the rabbit hole of online tracking and data collection, it’s becoming increasingly clear that the entire tech industry needs a rethink on its approach to user security. The days of “trust us” are behind us; what we need now is transparency, accountability, and a willingness to put users’ interests above profits.

Apple must re-examine its own commitment to user privacy in light of this incident. While the patch may have fixed the immediate issue, it’s the damage done to trust that will take far longer to repair.

Reader Views

  • CS
    Correspondent S. Tan · field correspondent

    The Apple patch may have plugged the Hide My Email vulnerability, but it's a Band-Aid on a larger wound. While some might view this as a minor misstep, I believe it speaks to a systemic issue: tech companies' tendency to prioritize image over substance. For every patch deployed, there are countless users who've had their trust exploited or eroded through inaction or deception. It's time for Apple and its peers to put their money where their mouths are – investing in robust security measures that align with their touted commitment to user privacy.

  • AD
    Analyst D. Park · policy analyst

    This patching debacle highlights the tension between Apple's self-proclaimed commitment to user security and its actual willingness to prioritize speed over thoroughness. While some might downplay this as a minor oversight, we should be concerned about what other vulnerabilities might be lurking in Apple's ecosystem. Furthermore, the ease with which third-party researchers like Tyler Murphy can uncover such issues raises questions about the robustness of Apple's internal security testing procedures.

  • CM
    Columnist M. Reid · opinion columnist

    The Apple fix is a Band-Aid on a larger wound. We're told that Hide My Email's vulnerability was patched, but what about the countless users who were already compromised during those months of delay? Apple's reputation for prioritizing user privacy will take more than just a single patch to repair – it'll require transparency and accountability in their development processes. And let's not forget: even if this fix works, it won't address the underlying issue: tech companies' willingness to sacrifice user trust in pursuit of growth and profit.

Related articles

More from Wordr

View as Web Story →