tchncs
  • Communities
  • Create Post
  • Create Community
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
cm0002@literature.cafe to cybersecurity@infosec.pub · 12 days ago

Someone has publicly leaked an exploit kit that can hack millions of iPhones

techcrunch.com

external-link
message-square
13
link
fedilink
  • cross-posted to:
  • technology@lemmit.online
  • security@lemmy.ml
  • technology@lemmy.zip
102
external-link

Someone has publicly leaked an exploit kit that can hack millions of iPhones

techcrunch.com

cm0002@literature.cafe to cybersecurity@infosec.pub · 12 days ago
message-square
13
link
fedilink
  • cross-posted to:
  • technology@lemmit.online
  • security@lemmy.ml
  • technology@lemmy.zip
Someone has publicly leaked an exploit kit that can hack millions of iPhones | TechCrunch
techcrunch.com
external-link
Leaked "DarkSword" exploits published to GitHub allow hackers and cybercriminals to target iPhone users running old versions of iOS with spyware, according to cybersecurity researchers.
alert-triangle
You must log in or # to comment.
  • SayCyberOnceMore@feddit.uk
    link
    fedilink
    arrow-up
    27
    ·
    12 days ago

    Please tell me that the vulnerability is due to government surveilance backdoors

    • Em Adespoton@lemmy.ca
      link
      fedilink
      arrow-up
      15
      ·
      12 days ago

      It appears to be related to exploit code that was sold by a US contractor to a Russian group; the exploits it uses are all patched on recent OS versions, but older versions of iOS 17 and 18 are vulnerable.

      • RustyShackleford@piefed.social
        link
        fedilink
        English
        arrow-up
        12
        arrow-down
        4
        ·
        12 days ago

        So cool that Apple stopped making iOS 18 updates for all devices above iPhone XR. /s Forcing users on 11/12/13/14/15/16/17 devices to choose either staying on the more stable 18.7.2 where they were comfortable, or the garbage can of iOS 26. They fixed the DarkSword issue on the XR and select iPads with a 18.8 patch, but refuse to release it for anyone still on 18.7.2, on any device that’s iOS 26 compatible.

        • reddig33@lemmy.world
          link
          fedilink
          arrow-up
          8
          ·
          4 days ago

          Well well well. Lookie there…

          https://www.wired.com/story/apple-will-push-out-rare-backported-patches-to-protect-ios-18-users-from-darksword-hacking-tool/

          • RustyShackleford@piefed.social
            link
            fedilink
            English
            arrow-up
            9
            ·
            3 days ago

            That just tells you they know how awful iOS 26 is lol.

        • reddig33@lemmy.world
          link
          fedilink
          arrow-up
          10
          arrow-down
          1
          ·
          11 days ago

          You’re being downvoted, but you’re correct. Apple is probably risking a lawsuit by not shipping an already available security update for all users of iOS 18.

        • 9tr6gyp3@lemmy.world
          link
          fedilink
          arrow-up
          8
          arrow-down
          12
          ·
          12 days ago

          So cool Apple stopped making iOS 2 updates for all devices above iPhone 3G. /s Forcing users on iPhone 1 to choose either staying on the more stable 2.2.1 where they were comfortable, or the garbage can of iOS 3/4/5/6/7/8/9/10/11/12/13/14/15/16/17/18/26.

    • CIA_chatbot@lemmy.world
      link
      fedilink
      arrow-up
      13
      arrow-down
      1
      ·
      12 days ago

      Ummm, it wasn’t me this time, I swear

    • ᥫ᭡ 𐑖ミꪜᴵ𝔦 ᥫ᭡@feddit.org
      link
      fedilink
      arrow-up
      10
      ·
      12 days ago

      You sure know what news you wanna hear 😄

      • 9tr6gyp3@lemmy.world
        link
        fedilink
        arrow-up
        6
        ·
        12 days ago

        Its been news before, so there is precedence for that possibility.

  • plateee@piefed.social
    link
    fedilink
    English
    arrow-up
    10
    ·
    12 days ago

    Aww where’s the link? I have an old iPhone that my ex-employeer didn’t want back - I wouldn’t mind playing around with it.

    • frongt@lemmy.zip
      link
      fedilink
      arrow-up
      19
      ·
      12 days ago

      Had to use duckduckgo to find it, but just “darksword site:github.com” worked. It’s not showing up in Google results.

      https://github.com/htimesnine/DarkSword-RCE

      There’s also an implementation in objc: https://github.com/opa334/darksword-kexploit

      • SayCyberOnceMore@feddit.uk
        link
        fedilink
        arrow-up
        4
        ·
        12 days ago

        FYI, you can just use !git or !gh with duckduckgo to focus on github

        DuckDuckGo Bangs

        (But interesting that Google’s filtering results…)

cybersecurity@infosec.pub

cybersecurity@infosec.pub

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !cybersecurity@infosec.pub

An umbrella community for all things cybersecurity / infosec. News, research, questions, are all welcome!

Community Rules

  • Be kind
  • Limit promotional activities
  • Non-cybersecurity posts should be redirected to other communities within infosec.pub.

Enjoy!

Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 2 users / day
  • 64 users / week
  • 385 users / month
  • 1.89K users / 6 months
  • 92 local subscribers
  • 6.02K subscribers
  • 1.22K Posts
  • 2.34K Comments
  • Modlog
  • mods:
  • shellsharks@infosec.pub
  • tweedge@infosec.pub
  • BE: 0.19.17
  • Modlog
  • Legal
  • Instances
  • Docs
  • Code
  • join-lemmy.org