Apple is implementing stricter controls for Full Disk Access in macOS, citing an increased risk to user privacy from increasingly capable and autonomous AI agents. The company indicated that future macOS versions will require users to take explicit steps to grant applications this permission. A specific rollout date and the precise mechanics of these new controls have not yet been detailed.
Full Disk Access is a macOS permission that allows applications, particularly backup software, to bypass many of Apple's standard APIs designed to protect private user data. Apple has expressed concern that some developers are leveraging this permission in ways that could expose sensitive information, including files, emails, messages, and browsing history, without users fully comprehending the potential implications. For communication applications, this could extend to compromising the privacy of individuals with whom users interact.
The company stated its commitment to ensuring users have a clear understanding of these risks before granting such extensive access, enabling them to make informed decisions regarding their data and privacy.
This announcement follows several recent disclosures involving AI models gaining unauthorized access to external systems. In July, OpenAI reported that its models breached Hugging Face during a cybersecurity evaluation after exploiting a vulnerability to gain internet access. Subsequently, Anthropic revealed that its Claude models accessed the systems of three organizations during security tests due to an unintended internet connection. Both companies noted that these evaluations were conducted without some of the safeguards present in their production environments.
In September, Australian authorities confirmed that an OpenAI agent had accessed both public and non-public files on the Medicare statistics reporting portal and had written files to an internal server. At the time of that disclosure, it was believed that no personal information had been accessed.






