monero.town
  • Communities
  • Create Post
  • Create Community
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
cm0002@literature.cafe to cybersecurity@infosec.pub · 1 个月前

Someone has publicly leaked an exploit kit that can hack millions of iPhones

techcrunch.com

external-link
message-square
13
link
fedilink
102
external-link

Someone has publicly leaked an exploit kit that can hack millions of iPhones

techcrunch.com

cm0002@literature.cafe to cybersecurity@infosec.pub · 1 个月前
message-square
13
link
fedilink
Someone has publicly leaked an exploit kit that can hack millions of iPhones | TechCrunch
techcrunch.com
external-link
Leaked "DarkSword" exploits published to GitHub allow hackers and cybercriminals to target iPhone users running old versions of iOS with spyware, according to cybersecurity researchers.
alert-triangle
You must log in or # to comment.
  • SayCyberOnceMore@feddit.uk
    link
    fedilink
    arrow-up
    27
    ·
    1 个月前

    Please tell me that the vulnerability is due to government surveilance backdoors

    • Em Adespoton@lemmy.ca
      link
      fedilink
      arrow-up
      15
      ·
      1 个月前

      It appears to be related to exploit code that was sold by a US contractor to a Russian group; the exploits it uses are all patched on recent OS versions, but older versions of iOS 17 and 18 are vulnerable.

      • RustyShackleford@piefed.social
        link
        fedilink
        English
        arrow-up
        12
        arrow-down
        5
        ·
        1 个月前

        So cool that Apple stopped making iOS 18 updates for all devices above iPhone XR. /s Forcing users on 11/12/13/14/15/16/17 devices to choose either staying on the more stable 18.7.2 where they were comfortable, or the garbage can of iOS 26. They fixed the DarkSword issue on the XR and select iPads with a 18.8 patch, but refuse to release it for anyone still on 18.7.2, on any device that’s iOS 26 compatible.

        • reddig33@lemmy.world
          link
          fedilink
          arrow-up
          10
          arrow-down
          1
          ·
          1 个月前

          You’re being downvoted, but you’re correct. Apple is probably risking a lawsuit by not shipping an already available security update for all users of iOS 18.

        • reddig33@lemmy.world
          link
          fedilink
          arrow-up
          8
          ·
          28 天前

          Well well well. Lookie there…

          https://www.wired.com/story/apple-will-push-out-rare-backported-patches-to-protect-ios-18-users-from-darksword-hacking-tool/

          • RustyShackleford@piefed.social
            link
            fedilink
            English
            arrow-up
            9
            ·
            28 天前

            That just tells you they know how awful iOS 26 is lol.

        • 9tr6gyp3@lemmy.world
          link
          fedilink
          arrow-up
          8
          arrow-down
          12
          ·
          1 个月前

          So cool Apple stopped making iOS 2 updates for all devices above iPhone 3G. /s Forcing users on iPhone 1 to choose either staying on the more stable 2.2.1 where they were comfortable, or the garbage can of iOS 3/4/5/6/7/8/9/10/11/12/13/14/15/16/17/18/26.

    • CIA_chatbot@lemmy.world
      link
      fedilink
      arrow-up
      13
      arrow-down
      1
      ·
      1 个月前

      Ummm, it wasn’t me this time, I swear

    • ᥫ᭡ 𐑖ミꪜᴵ𝔦 ᥫ᭡@feddit.org
      link
      fedilink
      arrow-up
      10
      ·
      1 个月前

      You sure know what news you wanna hear 😄

      • 9tr6gyp3@lemmy.world
        link
        fedilink
        arrow-up
        6
        ·
        1 个月前

        Its been news before, so there is precedence for that possibility.

  • plateee@piefed.social
    link
    fedilink
    English
    arrow-up
    10
    ·
    1 个月前

    Aww where’s the link? I have an old iPhone that my ex-employeer didn’t want back - I wouldn’t mind playing around with it.

    • frongt@lemmy.zip
      link
      fedilink
      arrow-up
      19
      ·
      1 个月前

      Had to use duckduckgo to find it, but just “darksword site:github.com” worked. It’s not showing up in Google results.

      https://github.com/htimesnine/DarkSword-RCE

      There’s also an implementation in objc: https://github.com/opa334/darksword-kexploit

      • SayCyberOnceMore@feddit.uk
        link
        fedilink
        arrow-up
        4
        ·
        1 个月前

        FYI, you can just use !git or !gh with duckduckgo to focus on github

        DuckDuckGo Bangs

        (But interesting that Google’s filtering results…)

cybersecurity@infosec.pub

cybersecurity@infosec.pub

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: [email protected]

An umbrella community for all things cybersecurity / infosec. News, research, questions, are all welcome!

Community Rules

  • Be kind
  • Limit promotional activities
  • Non-cybersecurity posts should be redirected to other communities within infosec.pub.

Enjoy!

Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 28 users / day
  • 158 users / week
  • 736 users / month
  • 2.02K users / 6 months
  • 10 local subscribers
  • 6.1K subscribers
  • 1.26K Posts
  • 2.4K Comments
  • Modlog
  • mods:
  • shellsharks@infosec.pub
  • tweedge@infosec.pub
  • BE: 0.19.13
  • Modlog
  • Legal
  • Instances
  • Docs
  • Code
  • join-lemmy.org