{"id":78472,"date":"2026-09-21T19:39:12","date_gmt":"2026-09-21T19:39:12","guid":{"rendered":"https:\/\/crowdfundjunction.com\/blog\/slowmist-warns-darksword-ios-exploit-targets-crypto-wallet-keys\/"},"modified":"2026-09-21T19:39:12","modified_gmt":"2026-09-21T19:39:12","slug":"slowmist-warns-darksword-ios-exploit-targets-crypto-wallet-keys","status":"publish","type":"post","link":"https:\/\/crowdfundjunction.com\/blog\/slowmist-warns-darksword-ios-exploit-targets-crypto-wallet-keys\/","title":{"rendered":"Slowmist Warns Darksword iOS Exploit Targets Crypto Wallet Keys"},"content":{"rendered":"<p><b>(Originally posted on : Bitcoin News )<\/b><br \/>\n<\/p>\n<div>\n<div class=\"@container mb-[25px] rounded-sm overflow-clip py-0.5 pr-0.5 pl-2.5 bg-success-100\">\n<div class=\"flex flex-col gap-m overflow-clip rounded-[6px] !bg-success-10 p-3 @[420px]:p-m\">\n<h2 class=\"m-0 flex items-center gap-s text-[19px] !text-[#1c1c1c] md:text-[20px]\"><svg xmlns=\"http:\/\/www.w3.org\/2000\/svg\" width=\"16\" height=\"10\" viewbox=\"0 0 16 10\" fill=\"none\" class=\"shrink-0 text-success-100\" aria-hidden=\"true\"><path d=\"M1 1.5h14\" stroke=\"currentColor\" stroke-width=\"2.5\" stroke-linecap=\"round\"\/><path d=\"M1 8.5h10\" stroke=\"currentColor\" stroke-width=\"2.5\" stroke-linecap=\"round\"\/><\/svg><span>Key Takeaways<\/span><\/h2>\n<ul class=\"m-0 flex list-none flex-col gap-m pl-0\">\n<li class=\"m-0 flex items-start gap-s !text-[#434248]\"><span class=\"mt-2 size-2 shrink-0 rounded-full bg-success-100\" aria-hidden=\"true\"\/><span class=\"text-body\">Hackers use the Darksword exploit via Safari to breach iOS security and drain self-custody crypto wallets.<\/span><\/li>\n<li class=\"m-0 flex items-start gap-s !text-[#434248]\"><span class=\"mt-2 size-2 shrink-0 rounded-full bg-success-100\" aria-hidden=\"true\"\/><span class=\"text-body\">Slowmist warns the exploit now targets newer iOS versions, vastly widening the threat to more mobile users.<\/span><\/li>\n<li class=\"m-0 flex items-start gap-s !text-[#434248]\"><span class=\"mt-2 size-2 shrink-0 rounded-full bg-success-100\" aria-hidden=\"true\"\/><span class=\"text-body\">Apple faces a lawsuit from three investors who lost $1.8M in BTC due to a fake wallet app on the App Store.<\/span><\/li>\n<\/ul>\n<\/div>\n<\/div>\n<h2>iPhone Face One Click Full Wallet Control Hack Exploit<\/h2>\n<p>iOS, the system used by all iPhones, Apple\u2019s line of mobile phones, is being actively targeted by crypto threat actors.<\/p>\n<p>23pds, Chief Information Security Officer (CISO) at Slowmist, <a href=\"https:\/\/x.com\/im23pds\/status\/2101265052825428144?s=20\" target=\"_blank\" rel=\"noopener noreferrer\">revealed that hackers had been taking advantage of security vulnerabilities<\/a> available in iOS via browsers to take control and steal funds from self-custody wallets installed on these devices.<\/p>\n<p>He stressed that threat actors are using the Darksword exploit, first <a href=\"https:\/\/cloud.google.com\/blog\/topics\/threat-intelligence\/darksword-ios-exploit-chain\" target=\"_blank\" rel=\"noopener noreferrer\">brought to the spotlight by the Google Threat Intelligence Group (GTIG)<\/a> in March, for this task. Darksword had been used in several campaigns against users in Saudi Arabia, Turkey, Malaysia, and Ukraine.<\/p>\n<p>Nonetheless, while Google reported that these attacks <a href=\"https:\/\/news.bitcoin.com\/binance-flags-ios-exploit-chain-threatening-crypto-wallet-data-security\/\">were only effective against iOS versions 18.4 through 18.7<\/a>, 23pds disclosed that hackers had adapted Darksword to be effective against recent iOS versions (iOS 26.5), making it a far more dangerous exploit and widening the target audience. Nonetheless, this assessment has not been officially verified.<\/p>\n<p>The attack likely starts with social engineering, as threat actors invite users to visit an exploited link using Safari, iOS\u2019s default browser. Through a single click, the exploit takes control of the device and escapes established control safety measures, reaching root permissions and extracting wallet data and personal keys stored on the device.<\/p>\n<p>To avoid becoming a victim of these exploits, users must update to the latest software version on their phones and avoid visiting sites suggested by unknown people on social media or messaging apps.<\/p>\n<p>The alleged exploit comes as Apple <a href=\"https:\/\/news.bitcoin.com\/regulation-and-legal\/a-fake-crypto-wallet-reached-apples-app-store-three-users-say-it-cost-them-1-8-million\/\">is facing legal action from three investors<\/a> who lost nearly $1.8 million in BTC after downloading a fake wallet app from Apple\u2019s official App Store. The lawsuit alleges that Apple failed to enforce security standards and seeks reimbursement and compensation for the damages suffered.<\/p>\n<\/p><\/div>\n<p><a href=\"https:\/\/news.bitcoin.com\/security\/slowmist-warns-darksword-ios-exploit-targets-crypto-wallet-keys\/\">Source link <\/a><br \/>\n<br \/><\/p>\n","protected":false},"excerpt":{"rendered":"<p>(Originally posted on : Bitcoin News ) Key Takeaways Hackers use the Darksword exploit via Safari to breach iOS security and drain self-custody crypto wallets. Slowmist warns the exploit now targets newer iOS versions, vastly widening the threat to more mobile users. Apple faces a lawsuit from three investors who lost $1.8M in BTC due [&hellip;]<\/p>\n","protected":false},"author":15,"featured_media":78473,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"om_disable_all_campaigns":false,"_monsterinsights_skip_tracking":false,"_monsterinsights_sitenote_active":false,"_monsterinsights_sitenote_note":"","_monsterinsights_sitenote_category":0},"categories":[32],"tags":[],"_links":{"self":[{"href":"https:\/\/crowdfundjunction.com\/blog\/wp-json\/wp\/v2\/posts\/78472"}],"collection":[{"href":"https:\/\/crowdfundjunction.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/crowdfundjunction.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/crowdfundjunction.com\/blog\/wp-json\/wp\/v2\/users\/15"}],"replies":[{"embeddable":true,"href":"https:\/\/crowdfundjunction.com\/blog\/wp-json\/wp\/v2\/comments?post=78472"}],"version-history":[{"count":0,"href":"https:\/\/crowdfundjunction.com\/blog\/wp-json\/wp\/v2\/posts\/78472\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/crowdfundjunction.com\/blog\/wp-json\/wp\/v2\/media\/78473"}],"wp:attachment":[{"href":"https:\/\/crowdfundjunction.com\/blog\/wp-json\/wp\/v2\/media?parent=78472"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/crowdfundjunction.com\/blog\/wp-json\/wp\/v2\/categories?post=78472"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/crowdfundjunction.com\/blog\/wp-json\/wp\/v2\/tags?post=78472"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}