⚠️ Ledger alert about DarkSword, attack on iPhone
Ledger CTO Charles Guillemet warned about DarkSword, a chain of 6 exploits that uses a malicious page in Safari as an entry point to compromise iPhones.
🔓 How it works: it escapes the browser sandbox, bypasses protections like PAC, and can reach the iOS kernel, without the victim downloading anything or handing over their keys.
🔑 Crypto risk: if the seed phrase is stored as a screenshot, note, or document on the phone, the attacker could steal it and drain the wallet.
🌍 It has already been used since Nov. 2025 against users in Saudi Arabia, Turkey, Malaysia, and Ukraine (Google TIG).
🛡️ Apple fixed the flaws in iOS 26.3. Recommendation: update the system and do not store private keys on connected devices; use a hardware wallet.
$BTC $SOL $ZEC
Ledger CTO Charles Guillemet warned about DarkSword, a chain of 6 exploits that uses a malicious page in Safari as an entry point to compromise iPhones.
🔓 How it works: it escapes the browser sandbox, bypasses protections like PAC, and can reach the iOS kernel, without the victim downloading anything or handing over their keys.
🔑 Crypto risk: if the seed phrase is stored as a screenshot, note, or document on the phone, the attacker could steal it and drain the wallet.
🌍 It has already been used since Nov. 2025 against users in Saudi Arabia, Turkey, Malaysia, and Ukraine (Google TIG).
🛡️ Apple fixed the flaws in iOS 26.3. Recommendation: update the system and do not store private keys on connected devices; use a hardware wallet.
$BTC $SOL $ZEC
