DarkSword exploit leaks on GitHub
Key Points:
- A newly leaked version of the DarkSword exploit targeting outdated iPhones and iPads has been published on GitHub, raising concerns about increased cyberattacks on vulnerable devices.
- The DarkSword and Coruna exploits chain multiple iOS and iPadOS vulnerabilities, primarily in WebKit, which Apple patched in recent updates including iOS 16.7.15 and iPadOS 15.8.7.
- Security experts warn that the leaked DarkSword code is simple HTML and JavaScript, making it easy for attackers with no iOS expertise to deploy the exploit quickly and widely.
- Apple has emphasized the importance of keeping devices updated and recommends enabling Lockdown Mode to mitigate hacking attempts, especially for devices that cannot run the latest OS versions.
- Microsoft, which owns GitHub, has not yet responded to inquiries about the exploit's publication, while Apple confirmed awareness and issued emergency patches for affected devices.