Technology & Science
Apple Rushes Background Patch After Leaked ‘DarkSword’ Exploit Hits iOS 18 Devices
On 17 Mar 2026 Apple activated its new Background Security Improvement system to push iOS 26.3.1(a) after researchers revealed the six-bug “DarkSword” chain was already compromising iPhones running iOS 18.4-18.7 via drive-by websites.
Focusing Facts
- DarkSword links six CVEs—including three zero-days—targeting WebKit and other components and still threatens an estimated 220–270 million iPhones that have not upgraded past iOS 18.
- Live watering-hole attacks were logged on at least two Ukrainian domains (novosti.dn.ua and 7aac.gov.ua) and traced back to November 2025, with additional activity in Saudi Arabia, Turkey and Malaysia.
- The emergency patch is the first to use Apple’s new ‘Automatically Install Background Security Improvements’ channel, pushed to all iOS 26.3.1 users beginning 17 Mar 2026.
See how 3 sources reported this story.
- ✓ Full multi-perspective analysis on every story
- ✓ Primary source links for every claim
- ✓ Daily email briefing — no algorithm
Perspectives in this article
- Sensationalist tabloid consumer media
- Apple-focused enthusiast press
- Cybersecurity-oriented tech & business outlets