By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
World of SoftwareWorld of SoftwareWorld of Software
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Search
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
Reading: Google reveals another exploit chain affecting outdated iPhones – 9to5Mac
Share
Sign In
Notification Show More
Font ResizerAa
World of SoftwareWorld of Software
Font ResizerAa
  • Software
  • Mobile
  • Computing
  • Gadget
  • Gaming
  • Videos
Search
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Have an existing account? Sign In
Follow US
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
World of Software > News > Google reveals another exploit chain affecting outdated iPhones – 9to5Mac
News

Google reveals another exploit chain affecting outdated iPhones – 9to5Mac

News Room
Last updated: 2026/03/20 at 12:41 AM
News Room Published 20 March 2026
Share
Google reveals another exploit chain affecting outdated iPhones – 9to5Mac
SHARE

Following its recent disclosure of the Coruna exploit chain targeting older iOS versions, the company has now revealed a similar attack believed to be called DarkSword. Here are the details.

A few more reasons to keep your devices up to date

A few weeks ago, Google and iVerify published two reports with complementary details on the Coruna exploit, which chained multiple iOS vulnerabilities to compromise iPhones running outdated system versions.

Following the release of the reports, Apple released iOS 16.7.15, iOS 15.8.7, iPadOS 16.7.15, and iPadOS 15.8.7, addressing kernel and WebKit vulnerabilities leveraged by Coruna.

Interestingly, earlier today, Apple published a new support document titled Update iOS to protect your iPhone from web attacks, in which it says that “security researchers recently identified web-based attacks that target out-of-date versions of iOS through malicious web content,” and goes on to explain the following:

If you have kept your iPhone software up to date, then you are already protected. (…) If your iPhone has an older version of iOS, update to protect your data:

  • Devices with the latest, updated versions of iOS 15 through iOS 26 are already protected. If you have not updated your software recently, update iOS on your iPhone.
  • We released a software update for iOS 15 and iOS 16 on March 11, 2026, to extend protection to older devices that cannot update to the latest version of iOS.
  • Devices with iOS 13 or iOS 14 must update to iOS 15 to receive these protections and will receive an additional alert to install a Critical Security Update in the next few days.
  • Apple Safe Browsing in Safari is on by default and blocks the malicious URL domains identified in these attacks.

Note: Users who are unable to update their device can consider enabling Lockdown Mode (if available) to protect against malicious web content and other threats.

As it turns out, the new Security post might be referring not just to Coruna but also to another exploit chain, which the Google Threat Intelligence Group (GTIG) believes is called DarkSword.

According to the GTIG, there are “multiple commercial surveillance vendors and suspected state-sponsored actors utilizing DarkSword in distinct campaigns,” and they add that “these threat actors have deployed the exploit chain against targets in Saudi Arabia, Turkey, Malaysia, and Ukraine.”

In a nutshell, DarkSword works similarly to Coruna. It chains multiple vulnerabilities to achieve a full kernel-level compromise.

Also like Coruna, DarkSword is delivered through compromised or decoy websites, then chains multiple stages before deploying payloads such as GHOSTBLADE, GHOSTKNIFE, and GHOSTSABER.

According to GTIG, the CVEs associated with DarkSword include:

  • CVE-2025-31277 (patched in iOS 18.6)
  • CVE-2026-20700 (patched in iOS 26.3)
  • CVE-2025-43529 (patched in iOS 18.7.3 and iOS 26.2)
  • CVE-2025-14174 (patched in iOS 18.7.3 and iOS 26.2)
  • CVE-2025-43510 (patched in iOS 18.7.2 and iOS 26.1)
  • CVE-2025-43520 (patched in iOS 18.7.2 and iOS 26.1)

To dive into the technical details, check out GTIG’s report, which was published in coordination with Lookout and iVerify, both of which also shared their own findings.

Oh, yes, and make sure that your devices are running the latest iOS version.

Worth checking out on Amazon

Add 9to5Mac as a preferred source on Google
Add 9to5Mac as a preferred source on Google

FTC: We use income earning auto affiliate links. More.

Sign Up For Daily Newsletter

Be keep up! Get the latest breaking news delivered straight to your inbox.
By signing up, you agree to our Terms of Use and acknowledge the data practices in our Privacy Policy. You may unsubscribe at any time.
Share This Article
Facebook Twitter Email Print
Share
What do you think?
Love0
Sad0
Happy0
Sleepy0
Angry0
Dead0
Wink0
Previous Article Chinese aviation company EHang picks Gotion High-Tech as preferred battery supplier for air taxis · TechNode Chinese aviation company EHang picks Gotion High-Tech as preferred battery supplier for air taxis · TechNode
Next Article Here’s how power users can instantly bypass Android’s 24-hour sideloading delay Here’s how power users can instantly bypass Android’s 24-hour sideloading delay
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Stay Connected

248.1k Like
69.1k Follow
134k Pin
54.3k Follow

Latest News

End of clap for Brava, the connected oven that cooked with light
End of clap for Brava, the connected oven that cooked with light
Mobile
Turning algorithms into action: the AI challenge connecting fintech talent to finance’s frontlines · TechNode
Turning algorithms into action: the AI challenge connecting fintech talent to finance’s frontlines · TechNode
Computing
Today's NYT Strands Hints, Answer and Help for March 20 #747 – CNET
Today's NYT Strands Hints, Answer and Help for March 20 #747 – CNET
News
How Affiliate Links Upgrade Your Influencer Marketing Program
How Affiliate Links Upgrade Your Influencer Marketing Program
Computing

You Might also Like

Today's NYT Strands Hints, Answer and Help for March 20 #747 – CNET
News

Today's NYT Strands Hints, Answer and Help for March 20 #747 – CNET

3 Min Read
Apple MacBook Neo vs. Apple iPad: The Neo Makes Me Regret Buying a New iPad
News

Apple MacBook Neo vs. Apple iPad: The Neo Makes Me Regret Buying a New iPad

18 Min Read
Hermès Now Sells ,250+ MagSafe Chargers Wrapped in Calfskin Leather
News

Hermès Now Sells $1,250+ MagSafe Chargers Wrapped in Calfskin Leather

4 Min Read
Pay once and secure 100TB of cloud storage for life with this limited-time deal
News

Pay once and secure 100TB of cloud storage for life with this limited-time deal

3 Min Read
//

World of Software is your one-stop website for the latest tech news and updates, follow us now to get the news that matters to you.

Quick Link

  • Privacy Policy
  • Terms of use
  • Advertise
  • Contact

Topics

  • Computing
  • Software
  • Press Release
  • Trending

Sign Up for Our Newsletter

Subscribe to our newsletter to get our newest articles instantly!

World of SoftwareWorld of Software
Follow US
Copyright © All Rights Reserved. World of Software.
Welcome Back!

Sign in to your account

Lost your password?