apple patient
  • Home
  • News
  • Rumors
  • Tips & Tricks
  • Reviews
  • Insights
No Result
View All Result
  • iPhone 18
  • iPhone 18 Pro
  • iPhone Duo
  • Apple Watch Series 12
  • Apple Watch Ultra 4
  • AirPods 5
  • iOS 27
  • iPadOS 27
  • macOS
  • MacBook Neo
  • iPhone 17e
  • AirTags
  • iOS 26
  • iPhone 17
  • MacBook Pro
  • iPadOS
  • iMac
  • Mac mini
  • HomePod
  • Apple TV
  • iPad Pro
  • iPhone Air
  • Apple Vision Pro
  • iPhone 16
  • AirPods 4
  • Apple Watch Ultra
  • HomePod Mini
  • MacBook Air
  • iPad
  • AirPods Max
  • AirPods Pro 3
  • Apple Watch Series 3
  • Mac Studio
  • Studio Display
  • iPad Air
  • iPad mini
  • watchOS 27
  • Apple CarPlay
  • Apple Pay
  • watchOS 26
  • Home
  • News
  • Rumors
  • Tips & Tricks
  • Reviews
  • Insights
No Result
View All Result
apple patient
No Result
View All Result
  • iPhone 18
  • iPhone 18 Pro
  • iPhone Duo
  • Apple Watch Series 12
  • Apple Watch Ultra 4
  • AirPods 5
  • iOS 27
  • iPadOS 27
  • macOS
  • MacBook Neo
  • iPhone 17e
  • AirTags
  • iOS 26
  • iPhone 17
  • MacBook Pro
  • iPadOS
  • iMac
  • Mac mini
  • HomePod
  • Apple TV
  • iPad Pro
  • iPhone Air
  • Apple Vision Pro
  • iPhone 16
  • AirPods 4
  • Apple Watch Ultra
  • HomePod Mini
  • MacBook Air
  • iPad
  • AirPods Max
  • AirPods Pro 3
  • Apple Watch Series 3
  • Mac Studio
  • Studio Display
  • iPad Air
  • iPad mini
  • watchOS 27
  • Apple CarPlay
  • Apple Pay
  • watchOS 26

Important iOS Update: DarkSword exploit available online

Milan Jovicic by Milan Jovicic
March 24, 2026 - 01:28 CET
in Apple News
0
iOS DarkSword Exploit

Image: Shutterstock / Cherdchai101

WhatsAppFacebookEmail
Threads

A dangerous iOS exploit is currently attracting attention after the associated code was made public. Dubbed DarkSword, this attack tool specifically targets security vulnerabilities in certain iOS versions. Although Apple has already patched the vulnerabilities, the situation remains critical because many devices have not yet been updated.

The release of exploit code is not a new phenomenon, but in this case, the implications are particularly significant. Previously, another tool called Coruna, possibly developed by a US government agency, was circulating. Now, DarkSword is another exploit that no longer exists in secret but is publicly available on GitHub.

This significantly changes the initial situation. Tools that were originally accessible only to a few players can now be used by a wider audience. Particularly in connection with iOS, this creates a concrete risk for devices that are not up to date.

What is the DarkSword exploit?

DarkSword is an exploit primarily targeting iOS versions between 18.4 and 18.7. However, older versions of iOS are also vulnerable to the exploited flaws.

The attack begins via Safari or the WebKit engine. Code is executed on the device through these entry points. The exploit then uses several vulnerabilities to bypass iOS's sandbox protection mechanisms.

After successful exploitation, an attacker can completely compromise an iPhone or iPad. This means comprehensive access to system functions and stored data.

Publishing on GitHub increases the risk

The crucial point in this case is public availability. The DarkSword code has been uploaded to GitHub and is therefore freely accessible.

According to a TechCrunch report, the version published there is relatively easy to use. This means that no in-depth knowledge of iOS is required to use the exploit.

Matthias Frielingsdorf, co-founder of the security company iVerify, describes the situation as serious. In his estimation, the exploits work immediately and without any special prior knowledge. At the same time, he assumes that criminals and other actors will begin to actively exploit these possibilities.

A Google spokesperson shares this assessment. The combination of ease of use and public availability significantly increases the likelihood of actual attacks.

What data can be accessed

The version published on GitHub contains not only the exploit itself, but also developer notes. These describe in detail how the attack works and what features it includes.

DarkSword is described as a tool that can read and exfiltrate forensically relevant files from iOS devices via HTTP.

Another section of the code deals with the activities following successful exploitation. It documents the entire process by which data is collected and transmitted. The data affected includes, among other things:

  • contacts
  • Call history
  • Messages
  • Contents of the iOS keychain

This information is transferred to an external server. Access to the keyring is particularly critical, as it contains sensitive login credentials.

Which iOS versions are affected?

The exploit primarily targets iOS 18.4 through iOS 18.7, but also works on older versions. This means a wide range of devices are potentially vulnerable.

Apple has since closed the security vulnerabilities and released corresponding updates. The following versions are considered secure:

  • iOS 26.3
  • iOS 18.7.3
  • iOS 16.7.15
  • iOS 15.8.7

Devices that have these or newer versions installed are protected against the DarkSword exploit.

Apple's response and recommended actions

An Apple spokesperson confirmed that software updates have been released to close the security gaps. At the same time, they emphasized that updating the system is the most important measure to ensure the security of Apple devices.

It was also pointed out that the so-called lockdown mode also offers protection against DarkSword. This function is specifically designed to restrict targeted attacks.

Why the danger still exists

Despite available updates, a key problem remains: not all devices have been updated. This is precisely where the current risk arises.

Because the exploit is publicly accessible and relatively easy to use, devices with older iOS versions are particularly at risk.

The combination of an existing vulnerability, freely available code, and ease of use creates a situation in which attacks become significantly more likely.

  • Apple warns of attacks: iOS update now required

iOS security depends on the current system state

The DarkSword exploit shows how quickly a closed security vulnerability can develop into a real threat again as soon as the corresponding code becomes public.

For iOS, this means specifically: Protection depends significantly on the installed system version. Devices without current updates remain vulnerable, even if the vulnerabilities have officially been patched.

This situation underscores the importance of regular software updates. In a world where exploits are readily available and easy to use, an outdated system quickly becomes a security risk. (Image: Shutterstock / Cherdchai101)

  • Smartphone storage grows in 2026 despite high prices
  • Instagram abandons encryption: A risky step
  • iPhone Air impresses: More successful than the Plus model
  • Apple teases AI improvements for WWDC 2026
  • Apple announces: WWDC 2026 will take place from June 8th to 12th.
  • Apple: John Ternus in focus as possible CEO
  • Apple celebrates 50 years: Big celebration planned at Apple Park
  • Terafab: Elon Musk plans the world's largest chip factory
  • Apple raises prices for external storage media
  • Apple planned to acquire Halide but failed
  • Elon Musk: Jurors see fraud in Twitter deal
  • WhatsApp is planning automatic translation for iPhone
  • Apple's Siri: New features could launch soon
  • Old Blackberry deals are catching up with Apple in court
  • OpenAI develops desktop super app for macOS
  • Apple achieves record launch with affordable MacBook Neo
  • Apple earned $900 million from AI Apps in 2025
  • Apple grows strongly in 2026 despite a weak China market
  • Google is working on a Gemini app for macOS users
  • Apple Health is getting smarter with AI through Perplexity Health
  • Apple extends its 50th anniversary celebration to more countries
Make Apfelpatient a preferred source One click – and you'll see us more often on Google
Was this article helpful?
YesNo
Tags: iOSiPhoneTechPatient
SendShareSend
Share

Our Amazon Storefront

A handpicked selection of products for iPhone, Mac and more – sorted by topic and updated regularly.

Shop Now

This post contains affiliate links (including Amazon). We earn a small commission on qualifying purchases – at no extra cost to you. Learn more on our Partner Program page.

Previous Post

Apple is reportedly preparing six new products

Next Post

Apple TV and Siri: EU broadcasters urge DMA rules

Milan Jovicic

Milan Jovicic

Milan founded Apfelpatient in 2016 and has been responsible for all editorial content since 2018 — news, rumors, guides, and product reviews. Apple devices here are not test units on loan for two weeks but everyday tools: from the iPhone through MacBook Pro, MacBook Air, and iMac to the Apple Vision Pro, at least one device from nearly every product category is in daily use, many of them replaced annually. Every menu path in a guide is verified on the device before it is published.

Related posts

watchOS 27.2: Code reveals new screenshot preview

by Milan Jovicic
September 24, 2026 - 8:36 p.m. CEST
Apple Watch Ultra with an orange band showing the app view, the device getting the new screenshot preview in watchOS 27.2

watchOS 27.2 includes a new screenshot interface for the Apple Watch: preview, share, and delete, just like on the iPhone. It's currently inactive.

Read moreDetails

Apple TV: Peanuts classics free again for Christmas

by Milan Jovicic
September 24, 2026 - 6:43 p.m. CEST
Charlie Brown holding a small Christmas tree under a starry sky in the snow, a scene from A Charlie Brown Christmas, free again on Apple TV

Three classic Peanuts cartoons are back on Apple TV for the holidays, no subscription required. Plus, there are new specials featuring Snoopy and the Fraggle Rocks.

Read moreDetails

The Wanted Man: Hugh Laurie on Apple TV from January

by Milan Jovicic
September 24, 2026 - 6:19 p.m. CEST
Hugh Laurie as crime boss Felix Carmichael in an evening scene from The Wanted Man on Apple TV

The Wanted Man premieres on January 6, 2027 on Apple TV. Hugh Laurie plays a crime boss who wants to escape – the finale is in February.

Read moreDetails

Apple and Qualcomm extend patent license from 2027

by Milan Jovicic
September 24, 2026 - 6:04 p.m. CEST
Back of an iPhone 18 Pro Max in a burgundy case on a grey surface, covered by the renewed Apple Qualcomm patent license

Apple and Qualcomm are extending their patent license from April 2027. Why this has nothing to do with the modem change and affects Germany.

Read moreDetails

iPhone 18 Pro: Update to prevent Face ID restarts is coming

by Milan Jovicic
September 24, 2026 - 1:13 p.m. CEST
iPhone showing the General settings with Software Update, where the fix for the Face ID reboots on iPhone 18 Pro will arrive

Apple has confirmed an update to fix the restarts after failed Face ID recognition on the iPhone 18 Pro and Pro Max. An exchange is not worthwhile.

Read moreDetails
Load More

Categories

  • Apple Insights
  • Apple Rumors
  • Apple News
  • Apple Tips & Tricks
  • iPhone news, rumors and tips
  • Mac and MacBook News
  • Reviews

About APFELPATIENT

APFELPATIENT brings you the latest Apple news, product updates, guides, reviews and tips across the entire Apple ecosystem — from the iPhone to the Mac to the Apple Vision Pro. From the first rumors to confirmed news: researched responsibly.

Follow Apfelpatient

Facebook Instagram YouTube Threads Threads

Company

  • About Apfelpatient
  • Contact
  • Author Profiles

Community

  • Netiquette
  • Push Notifications
  • RSS feed

Legal

  • Legal Notice
  • Privacy Policy
  • Terms of Use
  • Cookie Settings
  • Affiliate Program

Resources

  • Sitemap

© 2026 Apfelpatient. All rights reserved.

No Result
View All Result
  • Home
  • News
  • Rumors
  • Tips & Tricks
  • Reviews
  • Insights

© 2026 Apfelpatient. All rights reserved. Page Directory

Change language to Deutsch