SlowMist Finds No Confirmed Crypto Thefts From iPhone Safari Exploit
Blockchain security firm SlowMist stated it has not confirmed any cryptocurrency theft linked to a Safari browser exploit sample targeting iPhones. The clarification follows a warning from Ledger Chief Technology Officer Charles Guillemet regarding DarkSword, an exploit chain capable of compromising devices through malicious web pages. The attack reuses components originally documented by Google Threat Intelligence Group, which found it active since November 2025. SlowMist noted technical evidence specifically affects iOS versions 18.4 through 18.6.2, while earlier reports noted Apple patched the core vulnerabilities starting in iOS 26.3.