A recently discovered exploit kit, known as DarkSword, has emerged as a significant threat to Apple iOS devices, enabling attackers to extract sensitive information. Reports from the Google Threat Intelligence Group (GTIG), iVerify, and Lookout indicate that this toolkit has been in circulation since at least November 2025. DarkSword is notable for its use of six distinct vulnerabilities, including three zero-day flaws, which allow for comprehensive device takeovers. The exploit kit is reportedly being employed by various threat actors, including commercial surveillance companies and potentially state-sponsored groups. The implications of such a toolkit are severe, as it not only compromises individual devices but also poses a broader risk to user privacy and security. As the toolkit continues to be utilized in the wild, it highlights the urgent need for enhanced security measures and vigilance among iOS users.
DarkSword Exploit Kit Targets iOS with Multiple Vulnerabilities
A new exploit kit named DarkSword is being used to compromise iOS devices, leveraging several vulnerabilities for data theft.
