[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fJG7ilWRn07xEtlqE7DA_AGJGDLwds37TtvgjqAyGpz0":3},{"lesson":4},{"id":5,"slug":6,"article_id":7,"title":8,"body":9,"prevention":10,"framework_refs":11,"status":18,"created_at":19,"published_at":20,"article":21,"tags":25,"podcasts":38},"9838b0b7-eb16-46d1-b2ac-05673e36fb0f","nation-state-iphone-exploit-kit-leaked-on-github","f2debe6c-88be-43d6-9c7b-f0733970d179","Nation-State iPhone Exploit Kit Leaked on GitHub","A sophisticated iOS exploit kit called DarkSword, previously exclusive to nation-state actors, was leaked on GitHub and made publicly available. This transforms what was once a highly controlled cyber weapon into a tool accessible to any threat actor, dramatically expanding the attack surface for iPhone users globally. The incident demonstrates how supply chain compromises in the cyber weapons ecosystem can have cascading effects, turning targeted espionage tools into mass attack vectors. While Apple's built-in security features provide some protection, the democratization of advanced exploits significantly increases risk for hundreds of millions of users.","**Immediate actions:**\n- robust vulnerability management programs that rapidly identify and patch exploited vulnerabilities can reduce the effectiveness of leaked exploit kits\n\n**Long-term improvements:**\n- This incident could have been prevented through better operational security (OPSEC) and access controls by the original developers of the exploit kit\n\n**Detection measures:**\n- Organizations developing sensitive security tools should implement strict code repository access controls, watermarking of proprietary code, and monitoring for unauthorized disclosures\n- Supply chain security measures, including regular audits of third-party tools and repositories, help detect unauthorized code releases before they become widespread threats",[12,13,14,15,16,17],"CIS Control 2","CIS Control 7","NIST SC-29","NIST AC-2","NIST SI-4","ISO 27001 A.15.1","published","2026-03-24T23:07:58.797649+00:00","2026-03-24T23:07:58.487+00:00",{"id":7,"url":22,"slug":23,"title":24},"https:\u002F\u002Fcyberscoop.com\u002Fdarksword-iphone-spyware-leak-ios-18-exploit-threat\u002F","darksword-s-github-leak-threatens-to-turn-elite-iphone-hacking-into-a-tool-for-t","DarkSword’s GitHub leak threatens to turn elite iPhone hacking into a tool for the masses",[26,32],{"id":27,"name":28,"slug":29,"description":30,"color":31},"05757c8d-6b93-4194-b35d-7359e7d33b0e","Vulnerability Management","vulnerability-management","Missing scans, no risk prioritization","#fb923c",{"id":33,"name":34,"slug":35,"description":36,"color":37},"f0c2a0af-58aa-4128-87c9-6acd30f2dc48","Supply Chain","supply-chain","Third-party risk, compromised dependencies","#8b5cf6",[39],{"id":40,"date":41,"edition":42,"title":43,"audio_url":44},"a157da0d-1d4a-4a2a-863e-9cfbe4b95b03","2026-03-25","morning","ThreatNoir Morning Brief — March 25","https:\u002F\u002Fcdn.threatnoir.com\u002Fpodcasts\u002F2026-03-25\u002Fthreatnoir-morning-brief-2026-03-25.mp3"]