Close Menu
TechTost
  • AI
  • Apps
  • Crypto
  • Fintech
  • Hardware
  • Media & Entertainment
  • Security
  • Startups
  • Transportation
  • Venture
  • Recommended Essentials
What's Hot

Roku’s Howdy $3 subscription service launches on Prime Video

Someone has publicly leaked an exploit kit that can hack millions of iPhones

After spin-off, Y Combinator grad Glimpse raises $35 million led by a16z

Facebook X (Twitter) Instagram
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms and Conditions
  • Disclaimer
Facebook X (Twitter) Instagram
TechTost
Subscribe Now
  • AI

    With Sift Stack, two former SpaceX engineers are bringing the software that helped launch rockets to the factory

    25 March 2026

    OpenAI’s Sora was the creepiest app on your phone — now it’s shutting down

    25 March 2026

    Mirage raises $75M to continue building models for AI video editing app Captions

    24 March 2026

    Bernie Sanders’ AI ‘gotcha’ video fails, but the memes are great

    24 March 2026

    Are AI tokens the new signing bonus or just a cost of doing business?

    23 March 2026
  • Apps

    Talat’s AI meeting notes stay on your computer, not in the cloud

    25 March 2026

    Spotify is testing new tool to prevent artificial intelligence from attributing real artists

    25 March 2026

    Pinterest is launching a new feature for promoting a Pin

    24 March 2026

    Apple Maps may receive advertisements

    24 March 2026

    Facebook is launching a new monetization program to attract popular creators from TikTok, YouTube

    23 March 2026
  • Crypto

    Hackers stole over $2.7 billion in crypto in 2025, data shows

    23 December 2025

    New report examines how David Sachs may benefit from Trump administration role

    1 December 2025

    Why Benchmark Made a Rare Crypto Bet on Trading App Fomo, with $17M Series A

    6 November 2025

    Solana co-founder Anatoly Yakovenko is a big fan of agentic coding

    30 October 2025

    MoviePass opens Mogul fantasy league game to the public

    29 October 2025
  • Fintech

    Doss raises $55 million for AI inventory management that connects to ERP

    24 March 2026

    Despite stiff competition, Kalshi, Polymarket CEOs back $35m VC fund projections

    23 March 2026

    Amid legal turmoil, Kalshi is temporarily banned in Nevada

    20 March 2026

    Nominations for the Startup Battlefield 200 are still open

    19 March 2026

    Kalshi’s legal woes pile up as Arizona files first criminal charges for ‘illegal gambling operation’

    17 March 2026
  • Hardware

    Arm releases the first in-house chip in its 35-year history

    24 March 2026

    Ultrahuman boosts US push with Ring Pro as Oura tightens its grip

    24 March 2026

    Amazon is working on a new smartphone with Alexa at its core, the report says

    20 March 2026

    CEO Carl Pei says nothing about smartphone apps disappearing as they’re replaced by artificial intelligence agents

    18 March 2026

    MacBook Neo, AirPods Max 2, iPhone 17e and everything else Apple announced this month

    18 March 2026
  • Media & Entertainment

    Roku’s Howdy $3 subscription service launches on Prime Video

    25 March 2026

    Apple Music partners with Ticketmaster to boost concert discovery

    25 March 2026

    Google TV’s new Gemini features keep fans updated on sports teams and more

    24 March 2026

    Tubi joins forces with popular TikTokers to create original streaming content

    19 March 2026

    Patreon CEO calls AI companies’ fair use argument ‘bogus’, says creators should be paid

    18 March 2026
  • Security

    Someone has publicly leaked an exploit kit that can hack millions of iPhones

    25 March 2026

    The FCC bans the importation of new consumer routers made abroad, citing security risks

    25 March 2026

    Crunchyroll confirms data breach after hackers claim unauthorized access

    24 March 2026

    Delve halts demos, Insight Partners sheds investment position amid ‘false compliance’ claims

    24 March 2026

    The FBI says Iranian hackers are using Telegram to steal data in malware attacks

    23 March 2026
  • Startups

    After spin-off, Y Combinator grad Glimpse raises $35 million led by a16z

    25 March 2026

    Databricks has bought two startups to support its new AI security product

    25 March 2026

    Insight Partners removes investment post for Delve amid ‘false compliance’ claims.

    24 March 2026

    Bengaluru food delivery startup Swish raises $38 million, its third round in 18 months

    24 March 2026

    Cursor admits that his new coding model was built on top of Moonshot AI’s Kimi

    23 March 2026
  • Transportation

    Harbinger’s next product will be hybrid emergency vehicles

    25 March 2026

    Flighty’s new update gives you real-time alerts for airport disruptions

    25 March 2026

    Zoox is bringing its robotaxis to Austin and Miami

    24 March 2026

    Zipline raises another $200 million to fuel drone delivery expansion

    24 March 2026

    TechCrunch Mobility: Uber everywhere, at once

    23 March 2026
  • Venture

    Arinna raises $4 million to solve the space energy problem

    25 March 2026

    Accel, Prosus select six ‘off-the-map’ startups for inaugural India team

    25 March 2026

    Startup Gimlet Labs solves the AI ​​inference problem in a surprisingly elegant way

    24 March 2026

    AI startups are eating up the venture industry, and the returns, so far, are good

    21 March 2026

    Sequen raised $16 million to bring TikTok-style personalization technology to any consumer company

    19 March 2026
  • Recommended Essentials
TechTost
You are at:Home»Security»Someone has publicly leaked an exploit kit that can hack millions of iPhones
Security

Someone has publicly leaked an exploit kit that can hack millions of iPhones

techtost.comBy techtost.com25 March 202604 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Email
Someone Has Publicly Leaked An Exploit Kit That Can Hack
Share
Facebook Twitter LinkedIn Pinterest Email

Last week, cybersecurity researchers revealed a hacking campaign targeting iPhone users that used an advanced hacking tool called DarkSword. Now someone has leaked a newer version of DarkSword and posted it on the code sharing site GitHub.

Researchers warn that this would allow any hacker to easily use the tools to target iPhone users who are running older versions of Apple’s operating systems and have not yet updated to the latest iOS 26 software. This likely affects hundreds of millions of iPhones and iPads in active use, according to Apple’s own data on out-of-date devices.

“That’s bad. They’re very easy to reuse,” Matthias Frielingsdorf, the co-founder of mobile security startup iVerify, told TechCrunch on Monday. “I don’t think this can be contained anymore. So we have to wait for criminals and others to start using it.”

Frielingsdorf said these new versions of the DarkSword spyware share the same infrastructure as his colleagues at iVerify analyzed previouslyalthough the files are slightly different. The files uploaded to GitHub are not complex, just HTML and JavaScript, he said, meaning anyone can copy and paste them and host them on a server “in minutes to hours.”

“The exploits will work out of the box,” Frielingsdorf said. “No iOS expertise required.”

Google spokesperson Kimberly Samra, who previously analyzed the DarkSword exploitsaid the company’s researchers agree with Frielingsdorf’s assessment.

Contact us

Do you have more information about Darksword, Coruna, or other government hacking and spyware tools? From a non-working device, Lorenzo Franceschi-Bicchierai can be reached securely on Signal at +1 917 257 1382 or via Telegram, Keybase and Wire @lorenzofb or via email.

A security hobbyist who follows matteyeux also told TechCrunch that it is indeed trivial to use the leaked DarkSword samples. Matteyeux he wrote in a post on Monday X that he was able to hack an iPad mini tablet running iOS 18, the previous generation of the operating system vulnerable to DarkSword, using the DarkSword “in the wild” sample circulating online.

Techcrunch event

San Francisco, California
|
13-15 October 2026

Apple spokeswoman Sarah O’Rourke told TechCrunch that the company was aware of the exploit targeting devices running older and outdated operating systems, and issued an emergency update on March 11 for devices unable to run recent versions of iOS.

“Keeping your software up-to-date is the most important thing you can do to keep your Apple products secure,” O’Rourke said, adding that devices with updated software are not at risk from these reported attacks and that Lockdown mode will also block these specific attacks.

A representative for Microsoft, which owns GitHub, did not immediately respond to a request for comment.

The code, which TechCrunch is not linking to because it could be used in active attacks, contains several comments that describe how the exploits work and how to implement them.

A comment, likely written by one of the developers who worked on DarkSword, says the exploit “reads and infiltrates forensically relevant files from iOS devices via HTTP,” referring to stealing information from a person’s iPhone or iPad and sending the data over the Internet to a server controlled by attackers.

“This payload should be injected into a process with a file system access class,” the comment says.

In one case, the code refers to “post-exploit activity” and describes the process after malware gains access to a person’s phone and grabs its contents, including contacts, messages, call history and the iOS key, which stores Wi-Fi passwords and other secrets, and dumps them on a remote server.

Another file contains references to uploading data to a popular Ukrainian clothing website, though TechCrunch could not immediately determine why. DarkSword was reportedly used by Russian government hackers against Ukrainian targets.

This particular spyware works specifically against iPhones and iPads running iOS 18, according to iVerify, Googleand Stand-bywhich also previously analyzed the DarkSword malware.

According to Apple’s own numbersabout a quarter of all iPhone and iPad users are still running iOS 18 or earlier on their device. With more than 2.5 billion active devices, which likely equates to hundreds of millions of people whose devices are vulnerable to DarkSword attacks.

That’s why Frielingsdorf recommends everyone upgrade their iPhone’s operating system.

The discovery of DarkSword came just weeks after researchers discovered another advanced iPhone hacking toolkit known as Coruna. As TechCrunch reported, Coruna was originally developed by defense contractor L3Harris, whose Trenchant division makes hacking tools for the US government and its allies.

apple cyber security cybercrime Dark word Exclusive exploit GitHub hack hacker Hacking iPhone iPhones kit leaked millions publicly Verify
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleAfter spin-off, Y Combinator grad Glimpse raises $35 million led by a16z
Next Article Roku’s Howdy $3 subscription service launches on Prime Video
bhanuprakash.cg
techtost.com
  • Website

Related Posts

Harbinger’s next product will be hybrid emergency vehicles

25 March 2026

Arinna raises $4 million to solve the space energy problem

25 March 2026

With Sift Stack, two former SpaceX engineers are bringing the software that helped launch rockets to the factory

25 March 2026
Add A Comment

Leave A Reply Cancel Reply

Don't Miss

Roku’s Howdy $3 subscription service launches on Prime Video

25 March 2026

Someone has publicly leaked an exploit kit that can hack millions of iPhones

25 March 2026

After spin-off, Y Combinator grad Glimpse raises $35 million led by a16z

25 March 2026
Stay In Touch
  • Facebook
  • YouTube
  • TikTok
  • WhatsApp
  • Twitter
  • Instagram
Fintech

Doss raises $55 million for AI inventory management that connects to ERP

24 March 2026

Despite stiff competition, Kalshi, Polymarket CEOs back $35m VC fund projections

23 March 2026

Amid legal turmoil, Kalshi is temporarily banned in Nevada

20 March 2026
Startups

After spin-off, Y Combinator grad Glimpse raises $35 million led by a16z

Databricks has bought two startups to support its new AI security product

Insight Partners removes investment post for Delve amid ‘false compliance’ claims.

© 2026 TechTost. All Rights Reserved
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms and Conditions
  • Disclaimer

Type above and press Enter to search. Press Esc to cancel.