Someone has publicly leaked an exploit kit that can hack millions of iPhones (techcrunch.com)
from cm0002@literature.cafe to cybersecurity@infosec.pub on 24 Mar 00:02
https://literature.cafe/post/30072377

#cybersecurity

threaded - newest

Cyber@feddit.uk on 24 Mar 00:32 next collapse

Please tell me that the vulnerability is due to government surveilance backdoors

leviathan@feddit.org on 24 Mar 01:02 next collapse

You sure know what news you wanna hear 😄

9tr6gyp3@lemmy.world on 24 Mar 01:31 collapse

Its been news before, so there is precedence for that possibility.

CIA_chatbot@lemmy.world on 24 Mar 01:52 next collapse

Ummm, it wasn’t me this time, I swear

adespoton@lemmy.ca on 24 Mar 04:14 collapse

It appears to be related to exploit code that was sold by a US contractor to a Russian group; the exploits it uses are all patched on recent OS versions, but older versions of iOS 17 and 18 are vulnerable.

RustyShackleford@piefed.social on 24 Mar 05:56 collapse

So cool that Apple stopped making iOS 18 updates for all devices above iPhone XR. /s Forcing users on 11/12/13/14/15/16/17 devices to choose either staying on the more stable 18.7.2 where they were comfortable, or the garbage can of iOS 26. They fixed the DarkSword issue on the XR and select iPads with a 18.8 patch, but refuse to release it for anyone still on 18.7.2, on any device that’s iOS 26 compatible.

9tr6gyp3@lemmy.world on 24 Mar 07:54 next collapse

So cool Apple stopped making iOS 2 updates for all devices above iPhone 3G. /s Forcing users on iPhone 1 to choose either staying on the more stable 2.2.1 where they were comfortable, or the garbage can of iOS 3/4/5/6/7/8/9/10/11/12/13/14/15/16/17/18/26.

reddig33@lemmy.world on 24 Mar 17:16 next collapse

You’re being downvoted, but you’re correct. Apple is probably risking a lawsuit by not shipping an already available security update for all users of iOS 18.

reddig33@lemmy.world on 01 Apr 04:37 collapse

Well well well. Lookie there…

wired.com/…/apple-will-push-out-rare-backported-p…

RustyShackleford@piefed.social on 01 Apr 21:37 collapse

That just tells you they know how awful iOS 26 is lol.

plateee@piefed.social on 24 Mar 00:54 collapse

Aww where’s the link? I have an old iPhone that my ex-employeer didn’t want back - I wouldn’t mind playing around with it.

frongt@lemmy.zip on 24 Mar 01:59 collapse

Had to use duckduckgo to find it, but just “darksword site:github.com” worked. It’s not showing up in Google results.

github.com/htimesnine/DarkSword-RCE

There’s also an implementation in objc: github.com/opa334/darksword-kexploit

Cyber@feddit.uk on 24 Mar 08:44 collapse

FYI, you can just use !git or !gh with duckduckgo to focus on github

DuckDuckGo Bangs

(But interesting that Google’s filtering results…)