{"id":66491,"date":"2026-04-09T16:02:35","date_gmt":"2026-04-09T14:02:35","guid":{"rendered":"https:\/\/www.apfelpatient.de\/?p=66491"},"modified":"2026-04-09T16:04:02","modified_gmt":"2026-04-09T14:04:02","slug":"apple-intelligence-vulnerable-to-prompt-injection","status":"publish","type":"post","link":"https:\/\/www.apfelpatient.de\/en\/news\/apple-intelligence-anfaellig-fuer-prompt-injection","title":{"rendered":"Apple Intelligence vulnerable to prompt injection attacks"},"content":{"rendered":"<p class=\"has-drop-cap\"><strong>Security researchers have demonstrated that Apple&#039;s on-device AI can be manipulated through targeted input. The success rate was 76 percent \u2013 potentially affecting hundreds of thousands of users.<\/strong><\/p>\n\n\n\n<p class=\"translation-block\">Apple has positioned Apple Intelligence as a privacy-friendly alternative to cloud-based AI systems: A local language model runs directly on the device, while more complex tasks are processed via private cloud computing. However, this deep integration into the operating system poses risks. Researchers at RSAC Research have <a href=\"https:\/\/www.rsaconference.com\/library\/blog\/is-that-a-bad-apple-in-your-pocket-we-used-prompt-injection-to-hijack-apple-intelligence\" id=\"https:\/\/www.rsaconference.com\/library\/blog\/is-that-a-bad-apple-in-your-pocket-we-used-prompt-injection-to-hijack-apple-intelligence\" target=\"_blank\" rel=\"noreferrer noopener\" data-wpel-link=\"external\">demonstrated<\/a> that the on-device model can be manipulated using prompt injection techniques \u2013 with a success rate of 76 percent in 100 tests.<\/p>\n\n\n\n<p>The results were communicated to Apple on October 15, 2025. The study focused on the local Large Language Model, which is embedded in Apple&#039;s operating systems and also available to third-party apps via system APIs. The researchers demonstrate that the deeper system integration, which Apple deliberately chose, simultaneously increases the attack surface.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"h-wie-der-angriff-funktioniert\">How the attack works<\/h2>\n\n\n\n<p>The researchers combined two techniques to circumvent Apple&#039;s security measures. The first method, called &quot;Neural Exec,&quot; uses specially constructed inputs that appear meaningless to humans but are interpreted by the language model as concrete instructions.<\/p>\n\n\n\n<p>The second technique utilizes a Unicode function: the so-called right-to-left override. This allows text sections to be visually reversed, making embedded instructions invisible to human reviewers \u2013 the language model, however, reads them correctly. Combined, both methods bypass both the model&#039;s internal protection mechanisms and external filters.<\/p>\n\n\n\n<p>The result: The model can be made to generate outputs that are controlled by the attacker.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"h-warum-das-problematisch-ist\">Why this is problematic<\/h2>\n\n\n\n<p>The risk extends far beyond unwanted text output. Because Apple Intelligence connects directly to apps via system APIs, manipulated responses can influence app behavior or expose sensitive user data. A successful prompt injection attack could affect multiple apps and system-wide functions simultaneously.<\/p>\n\n\n\n<p>RSAC estimates that between 100,000 and one million users are already using apps that are potentially vulnerable. As more and more apps integrate Apple intelligence features, the number of potential attack targets is constantly growing.<\/p>\n\n\n\n<p>Attackers do not need direct access to the model itself \u2013 it is sufficient to send manipulated input via legitimate APIs. This makes the attack particularly difficult to detect and prevent.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"h-apples-reaktion\">Apple&#039;s reaction<\/h2>\n\n\n\n<p class=\"translation-block\">According to the researchers, Apple already strengthened security measures with iOS 26.4 and macOS 26.4, without publicly disclosing the specific changes. The recent collaboration with Anthropic within the framework of <a href=\"https:\/\/www.apfelpatient.de\/en\/news\/apple-and-anthropic-launch-cybersecurity-project\" id=\"https:\/\/www.apfelpatient.de\/news\/apple-und-anthropic-starten-cybersecurity-projekt\" data-wpel-link=\"internal\" target=\"_self\">Project Glasswing<\/a> demonstrates that Apple increasingly intends to enhance the security of its systems using AI-powered methods.<\/p>\n\n\n\n<p>At the time of publication, there is no evidence that the vulnerability is being actively exploited \u2013 the attack is currently purely theoretical. However, the techniques used, such as prompt injection and Unicode manipulation, are well-documented in security research and relatively easy to implement.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"h-was-das-fur-apple-intelligence-bedeutet\">What this means for Apple Intelligence<\/h2>\n\n\n\n<p>The results reveal a fundamental tension in Apple&#039;s AI strategy. While the decision to run models locally limits data exposure to the cloud, it simultaneously makes the operating system the gatekeeper and execution layer. If the safeguards fail, the consequences are correspondingly far-reaching.<\/p>\n\n\n\n<p>Apple&#039;s approach remains the right one from a data privacy perspective. However, RSAC research shows that local models are not automatically more secure than cloud-based systems. Actual security depends on how well a model can defend against adversarial input \u2013 regardless of where it runs. (Image: Shutterstock \/ Primakov)<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><a href=\"https:\/\/www.apfelpatient.de\/en\/news\/apple-demands-data-from-samsung-in-antitrust-case\" type=\"link\" id=\"https:\/\/www.apfelpatient.de\/news\/apple-fordert-samsung-daten-im-kartellverfahren\">Apple requests Samsung Data in US Antitrust Case<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/www.apfelpatient.de\/en\/news\/ios-26-4-1-anti-theft-protection-for-company-iphones\">iOS 26.4.1 activates Theft Protection on Company iPhones<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/www.apfelpatient.de\/en\/news\/apple-self-service-repair-store-spare-parts-for-macbook-neo-and-iphone-17e\">Self-Service Repair: New parts for MacBook Neo &amp; Co.<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/www.apfelpatient.de\/en\/news\/ios-26-4-1-fixes-a-serious-icloud-sync-bug\">iOS 26.4.1 fixes serious iCloud sync bug<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/www.apfelpatient.de\/en\/news\/iphone-dominates-with-five-models-in-the-top-10\">iPhone dominates Smartphone Ranking: Five Models in the Top 10<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/www.apfelpatient.de\/en\/news\/ios-26-4-1-bugfix-update-is-available\">iOS 26.4.1 is here: Apple releases bugfix Update<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/www.apfelpatient.de\/en\/news\/apple-ranks-last-in-repairability\">Apple ranks last in Repairability \u2013 with one exception<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/www.apfelpatient.de\/en\/news\/whatsapp-carplay-new-app-with-full-integration\">WhatsApp is getting a new CarPlay App with full Functionality<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/www.apfelpatient.de\/en\/news\/apple-squire-ki-tool-for-ui-prototypes-revealed\">Apple develops AI Tool for UI Prototypes<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/www.apfelpatient.de\/en\/news\/apple-and-anthropic-launch-cybersecurity-project\">Apple and Anthropic are jointly hunting for Security Vulnerabilities<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/www.apfelpatient.de\/en\/news\/studio-display-xdr-fda-approved-for-radiology\">Studio Display XDR receives FDA approval for Radiology<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/www.apfelpatient.de\/en\/news\/apple-patent-vision-pro-will-be-modularly-upgradeable\">Apple Patent: Vision Pro could become modular and upgradeable<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/www.apfelpatient.de\/en\/news\/steam-link-comes-natively-to-the-apple-vision-pro\">Steam Link comes natively to the Apple Vision Pro<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/www.apfelpatient.de\/en\/news\/dark-matter-season-2-starts-on-august-28-2026\">Dark Matter Season 2 premieres on August 28th on Apple TV<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/www.apfelpatient.de\/en\/news\/apple-arcade-may-2026-new-games-and-updates\">Apple Arcade May 2026: Nick Jr. Replay and new Games<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/www.apfelpatient.de\/en\/news\/macbook-neo-demand-exceeds-apples-supply\">MacBook Neo: Demand exceeds Apple's Chip Supply<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/www.apfelpatient.de\/en\/news\/vision-pro-insiders-reveal-chaotic-launch\">Vision Pro: Insiders report on chaotic Store Launch<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/www.apfelpatient.de\/en\/news\/tsmc-under-pressure-china-threatens-apples-chip-source\">China intensifies attacks on Apple's Chip Manufacturer TSMC<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/www.apfelpatient.de\/en\/news\/apple-is-accused-of-using-youtube-videos-for-ai\">Class action lawsuit accuses Apple of using YouTube videos for AI training<\/a><\/li>\n<\/ul>\n\n\n\n<h6 class=\"wp-block-heading translation-block\" id=\"h-kennt-ihr-schon-unsere-amazon-storefront-dort-findet-ihr-eine-handverlesene-auswahl-von-diversen-produkten-f-r-euer-iphone-und-co-viel-spa-beim-st-bern\"><em>Have you already visited our Amazon Storefront? There you&#039;ll find a hand-picked selection of various products for your iPhone and other devices \u2013 <span class=\"has-inline-color has-vivid-red-color\"><a href=\"https:\/\/www.amazon.de\/shop\/apfelpatientofficial\" class=\"ek-link\" data-wpel-link=\"exclude\" rel=\"follow noopener\" target=\"_self\"><span style=\"text-decoration: underline\" class=\"ek-underline\">enjoy browsing<\/span><\/a> !<\/span><\/em><\/h6>\n\n\n\n<h6 class=\"wp-block-heading translation-block\" id=\"h-der-beitrag-enthalt-partnerlinks\">This post contains <a data-type=\"URL\" data-id=\"https:\/\/www.apfelpatient.de\/partnerprogramm\" href=\"https:\/\/www.apfelpatient.de\/en\/partner-program\" data-wpel-link=\"internal\" target=\"_self\">affiliate links<\/a>.<\/h6>","protected":false},"excerpt":{"rendered":"<p>Researchers have shown that Apple&#039;s on-device AI can be manipulated through prompt injection. The success rate in tests was 76 percent.<\/p>","protected":false},"author":2,"featured_media":66490,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"jnews-multi-image_gallery":[],"jnews_single_post":{"format":"standard","override":[{"template":"2","parallax":"1","fullscreen":"1","layout":"right-sidebar","sidebar":"default-sidebar","second_sidebar":"default-sidebar","sticky_sidebar":"1","share_position":"top","share_float_style":"share-monocrhome","show_featured":"1","show_post_meta":"1","show_post_author":"1","show_post_author_image":"1","show_post_date":"1","post_date_format":"default","post_date_format_custom":"Y\/m\/d","show_post_category":"1","show_post_reading_time":"0","post_reading_time_wpm":"300","post_calculate_word_method":"str_word_count","show_zoom_button":"0","zoom_button_out_step":"2","zoom_button_in_step":"3","show_post_tag":"1","show_prev_next_post":"1","show_popup_post":"1","show_comment_section":"1","number_popup_post":"1","show_author_box":"0","show_post_related":"0","show_inline_post_related":"0"}],"image_override":[{"single_post_thumbnail_size":"crop-500","single_post_gallery_size":"crop-500"}],"trending_post_position":"meta","trending_post_label":"Trending","sponsored_post_label":"Sponsored by","disable_ad":"0"},"jnews_primary_category":{"id":"9"},"footnotes":""},"categories":[9],"tags":[34,1109],"class_list":["post-66491","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news","tag-apple-dienste","tag-apple-intelligence"],"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v27.3 (Yoast SEO v27.3) - https:\/\/yoast.com\/product\/yoast-seo-premium-wordpress\/ -->\n<title>Apple Intelligence anf\u00e4llig f\u00fcr Prompt Injection Apfelpatient<\/title>\n<meta name=\"description\" content=\"Forscher zeigen, dass Apples On-Device-KI durch Prompt Injection manipuliert werden kann. Die Erfolgsquote lag bei 76 Prozent in Tests.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.apfelpatient.de\/en\/news\/apple-intelligence-vulnerable-to-prompt-injection\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Apple Intelligence anf\u00e4llig f\u00fcr Prompt-Injection-Angriffe\" \/>\n<meta property=\"og:description\" content=\"Forscher zeigen, dass Apples On-Device-KI durch Prompt Injection manipuliert werden kann. Die Erfolgsquote lag bei 76 Prozent in Tests.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.apfelpatient.de\/en\/news\/apple-intelligence-vulnerable-to-prompt-injection\" \/>\n<meta property=\"og:site_name\" content=\"Apfelpatient\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/apfelpatientOfficial\" \/>\n<meta property=\"article:author\" content=\"https:\/\/www.facebook.com\/apfelpatientOfficial\" \/>\n<meta property=\"article:published_time\" content=\"2026-04-09T14:02:35+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2026-04-09T14:04:02+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.apfelpatient.de\/wp-content\/uploads\/2026\/04\/shutterstock_2541972133.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"1600\" \/>\n\t<meta property=\"og:image:height\" content=\"1067\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Milan\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:description\" content=\"Forscher zeigen, dass Apples On-Device-KI durch Prompt Injection manipuliert werden kann. Die Erfolgsquote lag bei 76 Prozent in Tests.\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Milan\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"5 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"NewsArticle\",\"@id\":\"https:\\\/\\\/www.apfelpatient.de\\\/news\\\/apple-intelligence-anfaellig-fuer-prompt-injection#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.apfelpatient.de\\\/news\\\/apple-intelligence-anfaellig-fuer-prompt-injection\"},\"author\":{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.apfelpatient.de\\\/en\\\/#organization\",\"name\":\"Apfelpatient\",\"url\":\"https:\\\/\\\/www.apfelpatient.de\\\/en\\\/\"},\"headline\":\"Apple Intelligence anf\u00e4llig f\u00fcr Prompt-Injection-Angriffe\",\"datePublished\":\"2026-04-09T14:02:35+00:00\",\"dateModified\":\"2026-04-09T14:04:02+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.apfelpatient.de\\\/news\\\/apple-intelligence-anfaellig-fuer-prompt-injection\"},\"wordCount\":698,\"publisher\":{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.apfelpatient.de\\\/en\\\/#organization\",\"name\":\"Apfelpatient\",\"url\":\"https:\\\/\\\/www.apfelpatient.de\\\/en\\\/\"},\"image\":{\"@id\":\"https:\\\/\\\/www.apfelpatient.de\\\/news\\\/apple-intelligence-anfaellig-fuer-prompt-injection#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.apfelpatient.de\\\/wp-content\\\/uploads\\\/2026\\\/04\\\/shutterstock_2541972133.jpg\",\"keywords\":[\"Apple Dienste\",\"Apple Intelligence\"],\"articleSection\":\"News\",\"inLanguage\":\"en-US\",\"copyrightYear\":\"2026\",\"copyrightHolder\":{\"@id\":\"https:\\\/\\\/www.apfelpatient.de\\\/en\\\/#organization\"}},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.apfelpatient.de\\\/news\\\/apple-intelligence-anfaellig-fuer-prompt-injection\",\"url\":\"https:\\\/\\\/www.apfelpatient.de\\\/news\\\/apple-intelligence-anfaellig-fuer-prompt-injection\",\"name\":\"Apple Intelligence anf\u00e4llig f\u00fcr Prompt Injection Apfelpatient\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.apfelpatient.de\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.apfelpatient.de\\\/news\\\/apple-intelligence-anfaellig-fuer-prompt-injection#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.apfelpatient.de\\\/news\\\/apple-intelligence-anfaellig-fuer-prompt-injection#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.apfelpatient.de\\\/wp-content\\\/uploads\\\/2026\\\/04\\\/shutterstock_2541972133.jpg\",\"datePublished\":\"2026-04-09T14:02:35+00:00\",\"dateModified\":\"2026-04-09T14:04:02+00:00\",\"description\":\"Forscher zeigen, dass Apples On-Device-KI durch Prompt Injection manipuliert werden kann. Die Erfolgsquote lag bei 76 Prozent in Tests.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.apfelpatient.de\\\/news\\\/apple-intelligence-anfaellig-fuer-prompt-injection#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.apfelpatient.de\\\/news\\\/apple-intelligence-anfaellig-fuer-prompt-injection\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.apfelpatient.de\\\/news\\\/apple-intelligence-anfaellig-fuer-prompt-injection#primaryimage\",\"url\":\"https:\\\/\\\/www.apfelpatient.de\\\/wp-content\\\/uploads\\\/2026\\\/04\\\/shutterstock_2541972133.jpg\",\"contentUrl\":\"https:\\\/\\\/www.apfelpatient.de\\\/wp-content\\\/uploads\\\/2026\\\/04\\\/shutterstock_2541972133.jpg\",\"width\":1600,\"height\":1067,\"caption\":\"Bild: Shutterstock \\\/ Primakov\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.apfelpatient.de\\\/news\\\/apple-intelligence-anfaellig-fuer-prompt-injection#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Startseite\",\"item\":\"https:\\\/\\\/www.apfelpatient.de\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Apple Intelligence anf\u00e4llig f\u00fcr Prompt-Injection-Angriffe\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.apfelpatient.de\\\/#website\",\"url\":\"https:\\\/\\\/www.apfelpatient.de\\\/\",\"name\":\"Apfelpatient\",\"description\":\"Alles rund um Apple!\",\"publisher\":{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.apfelpatient.de\\\/en\\\/#organization\",\"name\":\"Apfelpatient\",\"url\":\"https:\\\/\\\/www.apfelpatient.de\\\/en\\\/\"},\"alternateName\":\"Apfelpatient\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.apfelpatient.de\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":[\"Person\",\"Organization\"],\"@id\":\"https:\\\/\\\/www.apfelpatient.de\\\/#\\\/schema\\\/person\\\/cee68dd217e317f47879fcb0823d0296\",\"name\":\"Milan\",\"logo\":{\"@id\":\"https:\\\/\\\/www.apfelpatient.de\\\/#\\\/schema\\\/person\\\/image\\\/\"},\"description\":\"Hallo und herzlich willkommen auf meinem Technik-Blog! Als gro\u00dfer Apple-Fan berichte ich hier \u00fcber alles, was mit Apple zu tun hat: von den neuesten News und spannenden Ger\u00fcchten \u00fcber hilfreiche Tipps und Tricks bis hin zu ausf\u00fchrlichen Produkttests. Wenn du genauso technikbegeistert bist wie ich, bist du hier genau richtig!\",\"sameAs\":[\"https:\\\/\\\/www.facebook.com\\\/apfelpatientOfficial\",\"https:\\\/\\\/www.linkedin.com\\\/in\\\/milan-jovicic-42aa0231b\"],\"url\":\"https:\\\/\\\/www.apfelpatient.de\\\/en\\\/author\\\/apfeladmin\"}]}<\/script>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"Apple Intelligence vulnerable to Prompt Injection Apfelpatient","description":"Researchers have shown that Apple&#039;s on-device AI can be manipulated through prompt injection. The success rate in tests was 76 percent.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.apfelpatient.de\/en\/news\/apple-intelligence-vulnerable-to-prompt-injection","og_locale":"en_US","og_type":"article","og_title":"Apple Intelligence anf\u00e4llig f\u00fcr Prompt-Injection-Angriffe","og_description":"Forscher zeigen, dass Apples On-Device-KI durch Prompt Injection manipuliert werden kann. Die Erfolgsquote lag bei 76 Prozent in Tests.","og_url":"https:\/\/www.apfelpatient.de\/en\/news\/apple-intelligence-vulnerable-to-prompt-injection","og_site_name":"Apfelpatient","article_publisher":"https:\/\/www.facebook.com\/apfelpatientOfficial","article_author":"https:\/\/www.facebook.com\/apfelpatientOfficial","article_published_time":"2026-04-09T14:02:35+00:00","article_modified_time":"2026-04-09T14:04:02+00:00","og_image":[{"width":1600,"height":1067,"url":"https:\/\/www.apfelpatient.de\/wp-content\/uploads\/2026\/04\/shutterstock_2541972133.jpg","type":"image\/jpeg"}],"author":"Milan","twitter_card":"summary_large_image","twitter_description":"Forscher zeigen, dass Apples On-Device-KI durch Prompt Injection manipuliert werden kann. Die Erfolgsquote lag bei 76 Prozent in Tests.","twitter_misc":{"Written by":"Milan","Est. reading time":"5 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"NewsArticle","@id":"https:\/\/www.apfelpatient.de\/news\/apple-intelligence-anfaellig-fuer-prompt-injection#article","isPartOf":{"@id":"https:\/\/www.apfelpatient.de\/news\/apple-intelligence-anfaellig-fuer-prompt-injection"},"author":{"@type":"Organization","@id":"https:\/\/www.apfelpatient.de\/en\/#organization","name":"Apfelpatient","url":"https:\/\/www.apfelpatient.de\/en\/"},"headline":"Apple Intelligence anf\u00e4llig f\u00fcr Prompt-Injection-Angriffe","datePublished":"2026-04-09T14:02:35+00:00","dateModified":"2026-04-09T14:04:02+00:00","mainEntityOfPage":{"@id":"https:\/\/www.apfelpatient.de\/news\/apple-intelligence-anfaellig-fuer-prompt-injection"},"wordCount":698,"publisher":{"@type":"Organization","@id":"https:\/\/www.apfelpatient.de\/en\/#organization","name":"Apfelpatient","url":"https:\/\/www.apfelpatient.de\/en\/"},"image":{"@id":"https:\/\/www.apfelpatient.de\/news\/apple-intelligence-anfaellig-fuer-prompt-injection#primaryimage"},"thumbnailUrl":"https:\/\/www.apfelpatient.de\/wp-content\/uploads\/2026\/04\/shutterstock_2541972133.jpg","keywords":["Apple Dienste","Apple Intelligence"],"articleSection":"News","inLanguage":"en-US","copyrightYear":"2026","copyrightHolder":{"@id":"https:\/\/www.apfelpatient.de\/en\/#organization"}},{"@type":"WebPage","@id":"https:\/\/www.apfelpatient.de\/news\/apple-intelligence-anfaellig-fuer-prompt-injection","url":"https:\/\/www.apfelpatient.de\/news\/apple-intelligence-anfaellig-fuer-prompt-injection","name":"Apple Intelligence vulnerable to Prompt Injection Apfelpatient","isPartOf":{"@id":"https:\/\/www.apfelpatient.de\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.apfelpatient.de\/news\/apple-intelligence-anfaellig-fuer-prompt-injection#primaryimage"},"image":{"@id":"https:\/\/www.apfelpatient.de\/news\/apple-intelligence-anfaellig-fuer-prompt-injection#primaryimage"},"thumbnailUrl":"https:\/\/www.apfelpatient.de\/wp-content\/uploads\/2026\/04\/shutterstock_2541972133.jpg","datePublished":"2026-04-09T14:02:35+00:00","dateModified":"2026-04-09T14:04:02+00:00","description":"Researchers have shown that Apple&#039;s on-device AI can be manipulated through prompt injection. The success rate in tests was 76 percent.","breadcrumb":{"@id":"https:\/\/www.apfelpatient.de\/news\/apple-intelligence-anfaellig-fuer-prompt-injection#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.apfelpatient.de\/news\/apple-intelligence-anfaellig-fuer-prompt-injection"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.apfelpatient.de\/news\/apple-intelligence-anfaellig-fuer-prompt-injection#primaryimage","url":"https:\/\/www.apfelpatient.de\/wp-content\/uploads\/2026\/04\/shutterstock_2541972133.jpg","contentUrl":"https:\/\/www.apfelpatient.de\/wp-content\/uploads\/2026\/04\/shutterstock_2541972133.jpg","width":1600,"height":1067,"caption":"Bild: Shutterstock \/ Primakov"},{"@type":"BreadcrumbList","@id":"https:\/\/www.apfelpatient.de\/news\/apple-intelligence-anfaellig-fuer-prompt-injection#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Startseite","item":"https:\/\/www.apfelpatient.de\/"},{"@type":"ListItem","position":2,"name":"Apple Intelligence anf\u00e4llig f\u00fcr Prompt-Injection-Angriffe"}]},{"@type":"WebSite","@id":"https:\/\/www.apfelpatient.de\/#website","url":"https:\/\/www.apfelpatient.de\/","name":"apple patient","description":"Everything about Apple!","publisher":{"@type":"Organization","@id":"https:\/\/www.apfelpatient.de\/en\/#organization","name":"Apfelpatient","url":"https:\/\/www.apfelpatient.de\/en\/"},"alternateName":"Apfelpatient","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.apfelpatient.de\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":["Person","Organization"],"@id":"https:\/\/www.apfelpatient.de\/#\/schema\/person\/cee68dd217e317f47879fcb0823d0296","name":"Milan","logo":{"@id":"https:\/\/www.apfelpatient.de\/#\/schema\/person\/image\/"},"description":"Hello and welcome to my technology blog! As a big Apple fan, I report on everything to do with Apple: from the latest news and exciting rumors to helpful tips and tricks and detailed product tests. If you are as enthusiastic about technology as I am, you have come to the right place!","sameAs":["https:\/\/www.facebook.com\/apfelpatientOfficial","https:\/\/www.linkedin.com\/in\/milan-jovicic-42aa0231b"],"url":"https:\/\/www.apfelpatient.de\/en\/author\/apfeladmin"}]}},"_links":{"self":[{"href":"https:\/\/www.apfelpatient.de\/en\/wp-json\/wp\/v2\/posts\/66491","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.apfelpatient.de\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.apfelpatient.de\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.apfelpatient.de\/en\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.apfelpatient.de\/en\/wp-json\/wp\/v2\/comments?post=66491"}],"version-history":[{"count":2,"href":"https:\/\/www.apfelpatient.de\/en\/wp-json\/wp\/v2\/posts\/66491\/revisions"}],"predecessor-version":[{"id":66493,"href":"https:\/\/www.apfelpatient.de\/en\/wp-json\/wp\/v2\/posts\/66491\/revisions\/66493"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.apfelpatient.de\/en\/wp-json\/wp\/v2\/media\/66490"}],"wp:attachment":[{"href":"https:\/\/www.apfelpatient.de\/en\/wp-json\/wp\/v2\/media?parent=66491"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.apfelpatient.de\/en\/wp-json\/wp\/v2\/categories?post=66491"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.apfelpatient.de\/en\/wp-json\/wp\/v2\/tags?post=66491"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}