Hear me out: MagSafe has failed to reach its potential, but the foldable iPhone Ultra could revive it โ hereโs how
Read more of this story at Slashdot.
Apple rolled out the security patches for dozens of iPhone and iPad models and generations.
The post Apple Patches iOS Flaw Allowing Recovery of Deleted Chats appeared first on SecurityWeek.
Read more of this story at Slashdot.
Read more of this story at Slashdot.
The DarkSword exploit kit has been used by both state-sponsored hackers and commercial spyware vendors.
The post Apple Rolls Out DarkSword Exploit Protection to More Devices appeared first on SecurityWeek.
Leaked iOS spyware has some cybersecurity professionals raising urgent alarms about potential mass iPhone compromises, a development that pairs ominously with the recent discovery of two sophisticated iOS exploit kits.
At the same time, some other experts say Appleโs defensive features for iPhones remain elite. But several factors have created unprecedented circumstances: the public accessibility of a version of DarkSword, shortly after the discovery of the original version of DarkSword and the earlier discovery of a similar kit known asย Coruna, and aย growing market for iPhone exploits driven by their high value as targets.
Allan Liska, field chief information security officer at Recorded Future, said he was worried about what the leaked DarkSword version could do to โdemocratizeโ iPhone exploits.
โRight now, iPhone exploitations are among the most expensive to research/implement so they have been, largely, the realm of nation-states,โ he said. โIf anyone can exploit an iPhone, suddenly something that has managed to be relatively secure now is a much bigger attack surface.โ
Google, iVerify and Lookout released research last week on DarkSwordโs discovery, centered on Ukraine. Google also said it saw targeting in Saudi Arabia, Turkey and Malaysia. And that was before a version turned up on GitHub, a development TechCrunch first reported and Google and iVerify have analyzed. (The week before, iVerify and Google uncovered Coruna. Google declined to comment further for this story.)
โItโs extremely alarming that this leaked out on GitHub,โ said Rocky Cole, co-founder of iVerify. โI would assume that itโs being used all around the world, and including here in the United States.โ
Hundreds of millions of iPhones running iOS 18 could be vulnerable to DarkSword.
โI think that the top line issues here are pretty clear: people who have devices that are vulnerable should upgrade ASAP,โ said Eva Galperin, director of cybersecurity at the Electronic Frontier Foundation. โIt is very likely that these vulnerabilities are being used right now to exploit vulnerable devices at scale, which is unusual for Apple products.โ
Coruna was concerning enough for Apple that it took the rare step of backporting security updates to still older versions of iOS, Cole said. The fear, he said, was that it might be wormable โ capable of spreading from one device via text message to everyone in a phoneโs contact list.
But Cole said Apple hasnโt released similar security-focused updates to iOS 18, for reasons he doesnโt know.
Apple has emphasized the patches it has issued, urged users to update their phones and touted Lockdown Mode as a defense against spyware.
โApple devices are designed with multiple layers of security in order to protect against a wide range of potential threats, and every day Appleโs security teams around the world work tirelessly to protect usersโ devices and data,โ said Apple spokesperson Sarah OโRourke. โKeeping your software up to date is the single most important thing you can do to maintain the security of your Apple products, and devices with updated software were not at risk from these reported attacks.โ
IPhonesโ widespread use makes them high-value targets, fueling a thriving market for exploits. Coruna and DarkSword are indicators of this growing demand.ย
โItโs time for organizations to start thinking of mobile security the way they think about desktop security, which is to say everyone knows how to secure their laptop,โ Cole said. And for iPhone exploit hunting in particular, โyouโre starting to see people do it at a mass level.โ Furthermore, the resale market is such that exploits that once were exclusive are no longer, and AI makes it even easier to customize them in the code, he said.ย
DarkSword has drawn federal attention: The Cybersecurity and Infrastructure Security Agency this week added vulnerabilities that DarkSword exploits to the list that federal agencies must patch.
The number of people still using iOS 18 is large, up to 25% of all iPhones. Cole said several factors are contributing to that, such as users being leery of iOS 26โs onboard artificial intelligence or the Liquid Glass interface.
Said Galperin: โThere are many reasons why people do not keep their devices up to date, so when I tell people โjust patch your stuffโ I think it is important to realize that there are circumstances under which this is easier said than done.โ
Despite the concerns, Cole credited iPhone for its high security standards, in particular for its app store.
For Natalia Krapiva, senior tech-legal counsel at Access Now, a key takeaway is the worrisome proliferation of commercial spyware and cyber intrusion capabilities.
โThis is exactly what human rights activists and digital security researchers have been warning governments and companies about: In the absence of effective regulation for the industry, these exploits will get out and end up in the hands of adversaries like Russia, China, Iran, or, as in the case of DarkSword, leaked online for any criminal to use,โ she said.
On the other hand, Appleโs Lockdown Mode and Memory Integrity Enforcement are top-notch defensive measures, Krapiva said. Weโve yet to see a Lockdown Mode-enabled iPhone being infected with spyware, she said.
โI think weโll keep seeing more attempts to exploit both Apple and Android devices as they improve their software and hardware security,โ she said. โItโs the old cat-and-mouse game.โ
Adam Boynton, senior enterprise strategy manager at Jamf, said whatโs happened with Coruna and DarkSword is evidence of Appleโs success.
โWhatโs encouraging here is that Appleโs security model works,โ he said. โCoruna skips devices running the latest iOS versions and avoids those with Lockdown Mode enabled entirely. Thatโs a strong validation of the defences Apple has built.
โDarkSword reinforces the same principle,โ he continued. โWhere Coruna targeted older iOS versions, DarkSword demonstrates that even relatively current releases can be targeted by determined actors. Apple moved quickly to patch the vulnerabilities involved, and devices running the latest iOS are protected.โ
The post DarkSwordโs GitHub leak threatens to turn elite iPhone hacking into a tool for the masses appeared first on CyberScoop.