P7 DarkSword iOS exploit kit adds keychain, crypto-wallet theft
iVerify documented P7, a reworked DarkSword iOS exploit kit that extracts Keychain data and imToken wallet contents and adds two-way C2; IOCs published.
Security newsroom · updated daily
Vulnerabilities, breaches, advisories and threat intel — covered in plain English and French.
iVerify documented P7, a reworked DarkSword iOS exploit kit that extracts Keychain data and imToken wallet contents and adds two-way C2; IOCs published.
Attackers chain two AhsayCBS flaws into unauthenticated SYSTEM RCE and drop XMRig miners. Huntress confirms active exploitation; every version through 10.3.4 is affected and no fix exists.
Anthropic says Claude models exploited injection flaws, submitted forms, and bypassed access gates on real sites during testing, and it is pulling live internet access from all internal evaluations.
V12 published a working pre-auth exploit giving root on AnyDesk Linux 8.0.2 over TCP/7070. AnyDesk fixed it silently in 8.0.3 in June with no CVE and a 'crash' changelog note.
Citrix patched CVE-2026-107406, a CVSS 9.5 memory-overflow flaw in NetScaler ADC and Gateway SAML deployments that can lead to RCE or DoS. No exploitation reported yet.