logo

CISA Issues Warning on Apple Vulnerabilities Exploited Through DarkSword iOS Chain

ID: 1ffd4487-49dc-5fd0-a7a7-8b177fd33121

STIX ID: report--1ffd4487-49dc-5fd0-a7a7-8b177fd33121

Feed Name: GBHackers

Threat Score
90/100

Date Published: 2026-03-23

Date Updated: 2026-04-22

Author: Divya

...
...

CISA has issued an urgent advisory that three critical Apple vulnerabilities (CVE-2025-31277, CVE-2025-43520, CVE-2025-43510) are actively exploited as the multi-stage "DarkSword" iOS chain, enabling remote kernel-level takeover across macOS, iOS, iPadOS, watchOS, tvOS, and visionOS via malicious web content and apps; federal agencies must apply mitigations by April 3, 2026 under BOD 22-01, and all organizations and consumers are strongly urged to update or discontinue vulnerable devices.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.