DarkSword is a malware family tracked across 14 threat clusters and 41 intelligence report mentions on ThreatCluster. First observed March 18, 2026; most recent activity July 12, 2026.
The Google Threat Intelligence Group has identified DarkSword, a full-chain iOS exploit affecting versions 18.4 to 18.7. This exploit leverages multiple zero-day vulnerabilities, including CVE-2025-31277 and…
Russian cyber group APT28, also known as Fancy Bear, has been exploiting vulnerabilities in TP-Link and MikroTik routers to conduct large-scale DNS hijacking operations. This campaign, which has affected over 18,000…
The 'DarkSword' attack is now exploiting unpatched iPhones through phishing emails, as reported by Proofpoint. These emails contain links to malicious sites that host DarkSword, targeting iPhones running iOS versions…
A recent report from UK intelligence reveals that over 100 governments now have access to commercial spyware tools, a significant increase from 80 in 2023. These tools, such as NSO Group's Pegasus and Paragon's…
The Russian government has announced stricter operating requirements for internet service providers (ISPs), aiming to eliminate smaller neighborhood providers. New regulations will impose higher license fees, increased…
On April 22, 2026, Apple published CVE-2026-28950, a critical security flaw that allowed deleted notifications to be retrieved, posing a significant privacy risk. The issue affects all iPhones starting from the iPhone…
The art-template npm package, a popular JavaScript templating library, was compromised to deliver a sophisticated iOS exploit targeting Safari users. Discovered on May 20, 2026, the attack involved a watering-hole…
Researchers from Calif, a Palo Alto-based cybersecurity startup, successfully exploited Apple's Memory Integrity Enforcement (MIE) on the M5 chip within a week using Anthropic's AI model, Claude Mythos. The exploit…
In May 2026, a critical Android vulnerability (CVE-2026-0073) was disclosed, allowing remote device takeover without user interaction. This flaw, linked to the Android Debug Bridge, affects devices with ADB enabled,…
In Q1 2026, Kaspersky reported over 2.67 million mobile attacks, with a significant rise in banking Trojans. The number of unique users targeted remained stable despite a drop in total attacks. Banking Trojan packages…