Elektrine lite

← Feed

@agreenberg@infosec.exchange

2026-03-18 14:31 UTC

A second iOS exploit has been found in the wild, again used by Russian spies to infect websites and hack visitors' iPhones. This one works on iOS 18, and appeared in a very reusable form, so will likely proliferate. If you haven't updated your iPhone, now's the time. https://www.wired.com/story/hundreds-of-millions-of-iphones-can-be-hacked-with-a-new-tool-found-in-the-wild/

Replies (4)

  • @agreenberg@infosec.exchange 2026-03-18 14:36

    This tool has already been used in distinct hacking campaigns against Ukrainians, Malaysians, Saudi and Turkish victims. If other hackers needed any more encouragement to adopt it, too, the Russian spies who used it left it fully unobfuscated with helpful code comments legible.

    Open ##2527648

  • @yetzt@social.yetzt.me 2026-03-18 14:45

    @agreenberg@infosec.exchange

    Open ##2527649

  • @dalias@hachyderm.io 2026-03-18 15:07

    @agreenberg@infosec.exchange Lovely how you have to update the ~OS~ to a version with huge UI/UX regressions in order to mitigate a ~browser~ bug... 🤬

    Open ##2527652

  • @fmarini@mastodon.social 2026-03-18 15:40

    @agreenberg@infosec.exchange more in depth analysis from Google. It doesn’t seem to affect 18.7.3 at least (might also not work on 18.7.2 given that CVE-2025-43520, which DarkSword uses, has been patched in .2). https://www.wired.com/story/hundreds-of-millions-of-iphones-can-be-hacked-with-a-new-tool-found-in-the-wild/

    Open ##2527654