iPhone Hack Risk: Millions of Devices Vulnerable to US Spy Tool Leaks
Staying Safe Amidst iPhone Vulnerabilities
The recent discovery of hacking toolkits, Coruna and DarkSword, has exposed hundreds of millions of iPhones to risk. Originally developed by a US defense contractor, these toolkits have been linked to Russian and Chinese hacking groups.
According to security experts, the hackers use a “zero-click” exploitation technique, requiring no user interaction for the attack to succeed. Once compromised, the device sends sensitive information such as messages, browser history, location data, and cryptocurrency wallet details to the attackers’ servers.
Coruna and DarkSword: Exploiting Different Vulnerabilities
Coruna affects older versions of iOS (up to 17.2.1), while DarkSword impacts newer versions (up to 18.7). However, the DarkSword code has been made publicly available on GitHub, increasing the risk of exploitation.
Patching Vulnerabilities and Staying Protected
Apple has confirmed that the vulnerabilities exploited by Coruna and DarkSword have been patched in iOS 15 and later versions. However, nearly 33% of over 2.5 billion active Apple devices still run vulnerable software.
-
To mitigate this risk, Apple recommends updating to the latest version of iOS or enabling Lockdown Mode, which blocks these specific attacks.
-
While Lockdown Mode is only available on iOS 16 and later, it provides an additional layer of protection against these types of threats.
Responsible Disclosure and Proactive Measures
The fact that both Coruna and DarkSword were originally developed by a US defense contractor highlights the risks associated with the reuse of government-developed tools by other actors.
“This phenomenon underscores the importance of responsible disclosure and the need for timely patching of vulnerabilities to prevent them from falling into the wrong hands.” – Security Expert
Stay Informed, Stay Safe
As security experts warn of imminent campaigns targeting high-value victims via watering hole attacks, it is essential for users to take proactive steps to protect themselves and their devices.
By staying informed about the latest security threats and updates, individuals can reduce their exposure to these types of risks and ensure their online safety.