New iOS Safari Exploit Targets Crypto Wallets via DarkSword Chain
A malicious campaign disguised as a free VPS service is targeting iPhone users on iOS 18.4 through 18.6.2. The attack utilizes a Safari-based exploit chain, identified as a reuse of the DarkSword vulnerability chain, to steal files, Keychain data, and keyboard inputs from specific wallet applications. Similar malicious activity involving WebKit-to-kernel exploitation has also been reported by socket.dev, highlighting a broader trend of using n-day vulnerabilities to compromise mobile devices and extract seed phrases.
Summaries are written by AI from the original article. Not investment advice.