P7 DarkSword iOS exploit kit enables advanced device theft
Security researchers have revealed a new P7 DarkSword variant of the DarkSword iOS exploit kit, now found in the wild. This version reduces its on-device signature, can steal crypto wallet and keychain data directly from compromised iPhones, and establishes two-way communication with attackers. The spyware, used by multiple threat groups since late last year, targets unpatched devices in several countries and has been linked to both surveillance vendors and state-backed actors.
- P7 variant enables theft of crypto wallets and keychain data
- Reduces device footprint for improved stealth
- Used in attacks in Saudi Arabia, Turkey, Malaysia, Ukraine
- Targets unpatched iPhones with chained vulnerabilities
Sources covering this
In this story
More in Cybersecurity
Hackers hijack ccTLDs to forge Google certificates
Attackers gained control of the main domain registries for Ghana (.gh), Sierra Leone (.sl), and American Samoa (.as), allowing them to…
Hackers exploit AhsayCBS flaws to install cryptominers
Attackers are exploiting two unpatched vulnerabilities in the AhsayCBS backup management platform to gain remote access to systems,…
US offers $10M reward for alleged Hafnium hacker Zhang Yu
The US State Department has announced a reward of up to $10 million for information that could help identify or locate Zhang Yu, a…
Fraudulent Google Ads redirect users to fake Claude downloads
Hackers are using Google search ads that redirect through Bing's click-tracking system to lure users seeking Claude for Mac to install…