Safari Exploit Warning Issued for iPhone Users, Particularly Crypto Wallet Holders
iPhone users have been warned about a potential Safari exploit that could allow attackers to access cryptocurrency private keys and other sensitive data. According to SlowMist Chief Information Security Officer 23pds, the attack begins when a user visits a malicious webpage through Safari.
The reported exploit chain involves memory corruption in WebKit and JavaScriptCore, which could allow an attacker to bypass Apple's Pointer Authentication Code protections and gain deeper access to the device. This could potentially provide kernel-level access, allowing attackers to extract sensitive information stored on the iPhone.
Crypto users are particularly vulnerable as gaining access to an iPhone's Keychain or wallet data could expose credentials used to control self-custodied assets. The warning is related to DarkSword, an iOS exploit framework previously documented by Google's Threat Intelligence Group and other security researchers.