A new iPhone hacking tool called “DarkSword” has been discovered and it is being seen as a serious cybersecurity threat. Security researchers have identified it as a powerful exploit kit that uses hidden vulnerabilities. It is capable of breaking into iPhones and gaining deep access to the system. Both cybercriminals and state-linked attackers are reportedly using this tool in real attacks.

Apple logo on building exterior symbolizing iOS devices targeted by DarkSword zero-day exploit attacks

DarkSword mainly targets iPhones running certain versions of iOS, especially older ones like iOS 18.4 to 18.7. It works by using a chain of zero-day vulnerabilities that are not known publicly. These vulnerabilities allow attackers to run malicious code on the device. They can also bypass Apple’s built-in security protections after gaining access.

The attack process is simple but very effective for attackers. A user only needs to visit a malicious or compromised website. There is no need to download any file or click on anything suspicious. The exploit gets triggered automatically as soon as the page loads.

Close-up of computer code representing zero-day vulnerabilities used by DarkSword to execute malicious code on iPhones

Once triggered, the attacker can take control of the device within seconds. The process happens silently without showing any visible signs to the user. This makes it very difficult for victims to realize they have been attacked. The device continues to work normally while data is being accessed.

After gaining access, DarkSword can collect a wide range of sensitive information. This includes messages, emails, call logs, and location data. It can also access recordings and account-related information stored on the phone. In some cases, it is capable of stealing cryptocurrency wallet data as well.

Hooded hacker using smartphone illustrating mobile espionage and cyber attack using DarkSword exploit kit

One of the most concerning aspects of DarkSword is its dual-use nature. It is not limited to spying or surveillance activities by governments. The same tool is also being used by cybercriminals for financial gain. This increases the risk as multiple types of attackers can use it.

Researchers have found that DarkSword has been used in multiple countries. These include Saudi Arabia, Turkey, Malaysia, and Ukraine. It has been linked to surveillance vendors and suspected state-backed groups. This shows that the tool is spreading across different regions globally.

Apple logo with unlocked privacy settings screen representing iPhone security breach caused by DarkSword exploit kit

Another major concern is that the malware does not always leave clear traces. It can quickly collect data and complete its activity within minutes. This makes detection and investigation very difficult for security teams. Experts recommend keeping iPhones updated to stay protected from such threats.

Stay alert, and keep your security measures updated!

Source: Follow cybersecurity88 on X and LinkedIn for the latest cybersecurity news