Apple urges iPhone users to update as new DarkSword hacking tool lands online
Key Points:
- An updated version of the DarkSword hacking toolkit has been released on GitHub, making it freely accessible to threat actors aiming to target iPhones.
- DarkSword malware, which includes Ghostblade, Ghostknife, and Ghostsaber, uses JavaScript embedded in websites to install malware on iPhones, enabling data theft, audio recording, and location tracking.
- iPhones running iOS versions 18.4 to 18.7 are vulnerable, but all related security flaws have been patched in iOS 26.3 and later versions; users are urged to update immediately.
- Apple emphasizes that keeping iOS software up to date is crucial for security, and users can enable automatic security patches through the Background Security Improvements setting.
- Security experts warn that the DarkSword toolkit is easy to use, allowing even less skilled attackers to deploy the spyware quickly and effectively.