DarkSword Exploit - Millions of iPhones Vulnerable Now
Basically, a new hacking tool can easily break into many iPhones.
A dangerous exploit toolkit called DarkSword has leaked online, threatening millions of iPhones and iPads. Users are urged to update their devices immediately to avoid attacks. The risk is high, especially for those on outdated software.
The Flaw
The recently leaked DarkSword exploit chain poses a significant threat to millions of iPhones and iPads. Originally developed for sophisticated espionage, this toolkit has now been made publicly available on GitHub. It exploits multiple zero-day vulnerabilities in iOS, allowing attackers to gain complete control of devices with just a single click on a malicious webpage.
The exploit chain relies on six distinct vulnerabilities, including CVE-2025-31277 and CVE-2025-43529, which have been identified as critical weaknesses in the iOS operating system. These vulnerabilities allow attackers to bypass security measures and gain kernel-level access, enabling them to read and write data on the device without physical access.
What's at Risk
The implications of this leak are staggering. With approximately one quarter of all active iPhones and iPads still running outdated software, potentially hundreds of millions of devices are at risk. DarkSword specifically targets iOS versions 18.4 through 18.7, which remain unpatched against the full exploit chain unless upgraded to iOS 26.
This means that users who have not updated their devices are sitting ducks for cybercriminals looking to exploit these vulnerabilities. The toolkit was initially used in targeted attacks against Ukrainian citizens, showcasing its capability for rapid data exfiltration, including passwords and sensitive messages.
Patch Status
Apple has acknowledged the vulnerabilities and released an emergency security update for devices unable to upgrade to iOS 26. However, for many users still on older versions, the risk remains high. The urgency to update cannot be overstated; without the latest patches, devices are left vulnerable to attacks that can occur within minutes of exposure.
Additionally, users can enable Lockdown Mode as an immediate mitigation measure. This feature provides an extra layer of security, even on outdated software, against the DarkSword exploit.
Immediate Actions
Security experts are urging all iPhone and iPad users to take immediate action. Here’s what you should do:
- Update your device to iOS 26 or apply the emergency patch if you are unable to upgrade.
- Enable Lockdown Mode on your device to protect against potential attacks.
- Stay informed about the latest security updates and vulnerabilities.
By taking these steps, you can significantly reduce your risk of falling victim to the DarkSword exploit. The leak of this toolkit has transformed a once sophisticated attack method into an easily accessible tool for cybercriminals, making it imperative for users to act swiftly.
Cyber Security News