Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
2262 articles · 131494 vulns · 36/41 feeds (7d)
← Back to list
EST
PRE-CVEEXPLOITED
apple · ios

DarkSword iOS Exploit Chain

60% confidence

Description

DarkSword is a full-chain exploit chain leveraging six zero-day vulnerabilities in iOS versions 18.4 through 18.7 to deploy malware payloads. It has been used by commercial surveillance vendors and state-sponsored actors in targeted campaigns.

Affected Products

VendorProductVersions
appleios18.4 - 18.7

Related News (1 articles)

Tier C
Schneier on Security1h ago
DarkSword Malware
→ No new info (linked only)
CISA KEV❌ No
Actively exploited✅ Yes
PublishedMay 5, 2026
Last enriched1h ago
Tags
zero-dayiosexploit chain
Trending Score40
Source articles1
Independent1
Info Completeness6/14
Missing: cve_id, cvss, epss, cwe, kev, patch, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

MEDIUMCVE-2026-28950EXP
CVE-2026-28950: A logging issue was addressed with improved data redaction. This issue is fixed in iOS 18.7.8 and iPadOS 18.7.8, iOS 26.
Trending: 36
HIGHCVE-2026-20652
The issue was addressed with improved memory handling. This issue is fixed in macOS Tahoe 26.3, iOS 18.7.5 and iPadOS 18.7.5, visionOS 26.3, iOS 26.3 and iPadOS 26.3, Safari 26.3. A remote attacker ma
Trending: 9
MEDIUMCVE-2026-20636
The issue was addressed with improved memory handling. This issue is fixed in iOS 26.3 and iPadOS 26.3, Safari 26.3, macOS Tahoe 26.3, visionOS 26.3. Processing maliciously crafted web content may lea
Trending: 7
MEDIUMCVE-2026-20644
The issue was addressed with improved memory handling. This issue is fixed in macOS Tahoe 26.3, iOS 18.7.5 and iPadOS 18.7.5, visionOS 26.3, iOS 26.3 and iPadOS 26.3, Safari 26.3. Processing malicious
Trending: 7
MEDIUMCVE-2026-20608
This issue was addressed through improved state management. This issue is fixed in macOS Tahoe 26.3, iOS 18.7.5 and iPadOS 18.7.5, visionOS 26.3, iOS 26.3 and iPadOS 26.3, Safari 26.3. Processing mali
Trending: 7

Pin to Dashboard

Verification

State: reported
Confidence: 60%

Vulnerability Timeline

CVE Published
May 5, 2026
Actively Exploited
May 5, 2026
Exploit Available
May 5, 2026
Discovered by ZDM
May 5, 2026