Russia-linked hackers use advanced iPhone exploit to target Ukrainians
2026-03-19T08:51:53Z•afa6f44cba56af3615b8214c43d734b730f50a26517b458e88ced92ea529bdbb
APTDarkSwordLookoutRussia-linkedUkraine-targetingdata-exfiltrationiOSiPhonemobile-exploitmobile-malwarenation-statespywarestealthzero-clickzero-interaction
What happened
Security researchers at Lookout disclosed a Russia-linked malware campaign named “DarkSword” that uses an advanced iPhone exploit (a near zero‑click/zero‑interaction chain) to compromise devices, extract sensitive data within minutes, and remove traces of the intrusion. The campaign targeted Ukrainians and enables remote data exfiltration and stealthy cleanup; no public CVE IDs were reported in the disclosure.
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- therecord_media
- Record identifier
- afa6f44cba56af3615b8214c43d734b730f50a26517b458e88ced92ea529bdbb
- Enrichment time
- 2026-03-19T08:51:53Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.