In a significant security alert, Slowmist has raised concerns about the Darksword exploit, which now poses a serious threat to iOS crypto wallet users. This exploit allows hackers to gain root access to devices, enabling them to steal private keys and other sensitive data.
According to 23pds, Chief Information Security Officer at Slowmist, the Darksword exploit has evolved and is now effective against newer iOS versions, including iOS 26.5. Initially reported by the Google Threat Intelligence Group, this exploit has already been used in attacks across various countries, including Saudi Arabia and Ukraine.
The attack typically begins with social engineering tactics, where users are lured into clicking on malicious links through Safari, iOS's default browser. Once clicked, the exploit can bypass security measures, allowing hackers to extract wallet information stored on the device.
To mitigate the risk of falling victim to this exploit, users are strongly advised to update their iOS devices to the latest software version. Additionally, caution should be exercised when clicking on links shared by unknown sources on social media or messaging platforms.
This warning comes at a time when Apple is facing legal challenges from investors who lost significant amounts in Bitcoin due to a fraudulent wallet app available on the App Store. The lawsuit claims that Apple did not uphold necessary security standards, leading to substantial financial losses for users.