Researchers uncover new DarkSword spyware variant affecting unpatched iPhones
Researchers uncover a new DarkSword spyware variant targeting unpatched iPhones to steal personal data and crypto wallet phrases.
Velocity
How fast coverage is spreading — measured hourly from article rate × source diversity. How this works →
The brief
Recent reports from outlets including Bhaskar English, Digital Trends, CyberSecurityNews, iVerify, and 9to5Mac detail the emergence of a newly uncovered spyware variant identified as DarkSword or P7 DarkSword. According to the coverage, this malicious tool functions as an iOS exploit platform utilizing Coruna malware. The specific capabilities highlighted in the reports include the theft of user passwords, general device data, and crypto wallet recovery phrases. The coverage specifies that the exploit targets unpatched iPhones, allowing hackers to compromise devices and access sensitive user information in real time through mechanisms described as sleep, beacon, steal, and repeat. Specific publications have framed the threat around distinct vectors and consequences for users.
Digital Trends emphasizes that DarkSword has returned with a significantly more malicious capability that permits real-time data theft from compromised mobile devices. CyberSecurityNews zeroes in on the technical mechanism involving the Coruna malware and the direct threat to cryptocurrency assets via stolen wallet recovery phrases. Meanwhile, platforms like 9to5Mac and Bhaskar English focus on the broader user vulnerability, advising caution and detailing what the P7 DarkSword malware actually entails for device owners, while iVerify provides investigative analysis reflecting the cyclical nature of the spyware's activity. The broader context provided by the coverage centers on the persistent vulnerability of mobile operating systems and the continuous evolution of advanced spyware platforms. The reports highlight the specific risk posed to users who have not applied the latest security updates, creating an opening for sophisticated exploit platforms like DarkSword to infiltrate devices.
While the historical background of the DarkSword platform is not fully detailed in the current headlines, the coverage underscores an ongoing arms race between malicious developers deploying tools like Coruna malware and security researchers working to identify and mitigate these platform-level threats. As the situation develops, readers and device users must monitor subsequent updates from security researchers and technology publications to understand remediation steps. Coverage does not yet specify a comprehensive manufacturer patch release date or official mitigation advisory beyond the general warning regarding unpatched devices. Observers will be tracking further technical disclosures from reporting outlets such as iVerify and 9to5Mac to determine the full scope of devices affected and whether additional software vulnerabilities are being exploited by the DarkSword platform.
Synthesized by PULSE from the headlines below under a strict no-invention contract. ✓ fact-checked: all claims supported by sources Updated 2h ago.
Quick answers
What is the new spyware variant called?
Coverage identifies the new variant as DarkSword, P7 DarkSword, or part of the DarkSword iOS Exploit Platform.
What kind of data can the malware steal?
According to the reports, the spyware can steal passwords, general device data, and crypto wallet recovery phrases.
Which devices are affected?
The coverage specifies that the spyware affects unpatched iPhones.
Coverage (6)
- Still on iOS 18? A Stealthier DarkSword Variant Could Be Your Problem Android Headlines · 15h ago
- iPhone users beware! New spyware can steal passwords and data: What is 'P7 DarkSword' malware, and how to s... Bhaskar English · 15h ago
- DarkSword returns with a nastier trick that lets hackers steal your iPhone data in real time Digital Trends · 15h ago
- DarkSword iOS Exploit Platform Uses Coruna Malware to Steal Crypto Wallet Recovery Phrases CyberSecurityNews · 15h ago
- Sleep, Beacon, Steal, Repeat iVerify · 15h ago
- Researchers uncover new DarkSword spyware variant affecting unpatched iPhones 9to5Mac · 15h ago
Topics
Related trends
Attackers hijacked top-level domains, minted fake security certs for Google and other orgs
Attackers hijacked country-code domains to impersonate Google and other major services, creating security risks.
Anthropic launches free AI security scans for open-source projects
Anthropic has launched free AI security scans for open-source projects to defend critical infrastructure.
Hackers hijack Google domains after breaching ccTLD registries
Hackers hijack Google domains after breaching ccTLD registries, according to recent technology reporting.
Attackers Hijack .gh, .sl, and .as Registries to Obtain Certificates for Google Domains
Attackers hijack country-code top-level domains to obtain unauthorized HTTPS certificates for Google, prompting direct response actions.
Massive GTA 6 Leak Reveals Story Spoilers, Car Chases, And Jason’s Dong
Massive GTA 6 leaks hit the internet, revealing 25 minutes of gameplay, story spoilers, and unexpected source code breaches.
Apple Reportedly Waiting on Samsung for Ultimate Bezel-Free iPhone Display
Apple is reportedly waiting on Samsung's revolutionary full-surround OLED display technology to build its ultimate bezel-free iPhone.