Live data from Hacker News

Hundreds of Millions of iPhones Can Be Hacked With a New Tool Found in the Wild

wired.com

91–100 of 101 posts

Re: Hundreds of Millions of iPhones Can Be Hacked With a New Tool Found in the Wild

#92
post #5

Here is the Google Research group's writeup https://cloud.google.com/blog/topics/threat-intelligence/dar... Relevant forward: > GTIG has identified several different users of the DarkSword exploit chain dating back to November 2025. In addition to the case studies on DarkSword usage documented in this blog post, we assess it is likely that other commercial surveillance vendors or threat actors may also be using DarkS…

Also of note, the exploit relied on:

    - CVE-2025-31277 or CVE-2025-43529
    - CVE-2026-20700
    - CVE-2025-14714
    - CVE-2025-43510
    - CVE-2025-43520
Any single of these patched and the exploit was not functional anymore. After a collaboration between the Google Threat Intelligence Group and Apple all of these have been patched.

Re: Hundreds of Millions of iPhones Can Be Hacked With a New Tool Found in the Wild

#93
post #79
post #33

Earlier quoted context omitted.

Note that this is 1-click. 0-click example: receive an MMS with a malformed image that exploits a bug in decoding

"0-click example: receive an MMS with a malformed image that exploits a bug in decoding ..." Consider a SMS firewall that: - flattens text to ascii-256 - recompresses, noises and slightly resizes images and video ... and only then passes the message onto your real (SIM card) phone number. This, of course, requires that you host your phone number somewhere like Twilio which has other added benefits like additional pro…

If this firewall is available as a commercial product, eventually it be infected, so there won't be any need to hack any client devices. Since this is clearly a niche product, the device manufacturer won't be able to identify and fix bugs as effectively as companies like Apple do. This follows ROSKOMNADZOR recommendations: to install a middleware device that decrypts, stores, modifies, blocks and redirects all traffic depending on rules submitted from external party.

Re: Hundreds of Millions of iPhones Can Be Hacked With a New Tool Found in the Wild

#94
post #36

Earlier quoted context omitted.

Haha thanks! Good to know they are on years now. Back to random version numbers in 5 year? :p

How is increasing by 1 every year random? :P

At some point they will decide to release two versions in a single year and have figure out how to distinguish them.

It's inevitable because they decided on year, and Murphy's law dictates that'll they will encounter this problem.

Re: Hundreds of Millions of iPhones Can Be Hacked With a New Tool Found in the Wild

#95

Earlier quoted context omitted.

Even then. I'll take a leaky iOS 18 over pretty much any leaky Android or internet-connected TV or whatever. iPhones are still the least bad option, for regular people who aren't planning to solder anything, select their boot loader on launch, or recompile a kernel.

My Pixel 8 Pro is more secure than your iOS 18 handset Apple don't care about.

https://x.com/protonvpn/status/2034400966590496834

Re: Hundreds of Millions of iPhones Can Be Hacked With a New Tool Found in the Wild

#96
post #93
post #79

Earlier quoted context omitted.

"0-click example: receive an MMS with a malformed image that exploits a bug in decoding ..." Consider a SMS firewall that: - flattens text to ascii-256 - recompresses, noises and slightly resizes images and video ... and only then passes the message onto your real (SIM card) phone number. This, of course, requires that you host your phone number somewhere like Twilio which has other added benefits like additional pro…

If this firewall is available as a commercial product, eventually it be infected, so there won't be any need to hack any client devices. Since this is clearly a niche product, the device manufacturer won't be able to identify and fix bugs as effectively as companies like Apple do. This follows ROSKOMNADZOR recommendations: to install a middleware device that decrypts, stores, modifies, blocks and redirects all traffi…

This isn’t a product.

This is a solution you build and run for yourself.

Re: Hundreds of Millions of iPhones Can Be Hacked With a New Tool Found in the Wild

#97

Earlier quoted context omitted.

Even then. I'll take a leaky iOS 18 over pretty much any leaky Android or internet-connected TV or whatever. iPhones are still the least bad option, for regular people who aren't planning to solder anything, select their boot loader on launch, or recompile a kernel.

My Pixel 8 Pro is more secure than your iOS 18 handset Apple don't care about.

You are claiming that based on information you don't have (the future). At least you could call it a prediction rather than state it as an obvious disfact.

Re: Hundreds of Millions of iPhones Can Be Hacked With a New Tool Found in the Wild

#99
post #79
post #33

Earlier quoted context omitted.

Note that this is 1-click. 0-click example: receive an MMS with a malformed image that exploits a bug in decoding

"0-click example: receive an MMS with a malformed image that exploits a bug in decoding ..." Consider a SMS firewall that: - flattens text to ascii-256 - recompresses, noises and slightly resizes images and video ... and only then passes the message onto your real (SIM card) phone number. This, of course, requires that you host your phone number somewhere like Twilio which has other added benefits like additional pro…

This is a great flex, and appreciated.

Re: Hundreds of Millions of iPhones Can Be Hacked With a New Tool Found in the Wild

#100

All these exploits and we still can't get proper jailbreaks on new iOS versions :( I moved away from Android years ago in the interest of digital privacy so it's just wonderful to hear security isn't as tight as I'd hoped haha.. Then again I guess those like myself staying on the bleeding edge version-wise aren't affected.

I'm on regular Android but thinking about switching to GrapheneOS for my next phone.
Post reply on HN