Apple has expanded the availability of iOS 18.7.7 to a wider range of devices, allowing more iPhones and iPads still running iOS 18 to receive security patches for the actively exploited DarkSword exploit kit. The update was rolled out to additional devices on April 1, 2026, according to Apple's iOS 18.7.7 security changelog.
Apple states in the changelog that the update is available for more devices as of April 1, 2026, so users with Automatic Updates turned on can receive important security protections from web attacks known as DarkSword.
Apple Expands iOS 18.7.7 DarkSword Patches to More Devices
DarkSword is an exploit kit that targets iPhones running iOS versions 18.4 through 18.7. It was disclosed in March 2026 by researchers from Lookout, iVerify, and Google Threat Intelligence. The kit leverages six vulnerabilities, CVE-2025-31277, CVE-2025-43529, CVE-2026-20700, CVE-2025-14174, CVE-2025-43510, and CVE-2025-43520.
Unlike most iOS exploit kits, which have mostly been used in highly targeted spyware campaigns, DarkSword has seen broader deployment. Confirmed users include the Turkish commercial surveillance company PARS Defense, a threat actor known as UNC6748, and a suspected Russian espionage group identified as UNC6353.
Researchers have observed three malware families associated with DarkSword attacks. These include GhostBlade, an aggressive JavaScript-based infostealer; GhostKnife, a backdoor; and GhostSaber, a JavaScript malware capable of executing code and stealing data.
The threat landscape expanded further last month when a researcher published details of the DarkSword exploit kit on GitHub. This act made it accessible to additional threat actors targeting devices that have not been patched.
What DarkSword Is and How It’s Being Used in Attacks
Apple started patching DarkSword vulnerabilities gradually from iOS 18.6 onward. By late 2025, Apple had stopped providing iOS 18 updates to devices capable of running iOS 26. As a result, newer hardware still operating on iOS 18 no longer received DarkSword patches released in 2026.
Before today's update, iOS 18.7.6 was only available for iPhone XS, iPhone XS Max, and iPhone XR. With iOS 18.7.7, support has been expanded to a much larger range of devices.
Devices Now Eligible for the iOS 18.7.7 Update
The following devices are now compatible with iOS 18.7.7: iPhone XR, iPhone XS, iPhone XS Max, all models of the iPhone 11, second-generation iPhone SE, all models of the iPhone 12, 13, 14, 15, and 16, as well as the 16e.
Additionally, support has been extended to the iPad mini fifth generation, iPad seventh generation, iPad Air third through fifth generations, iPad Air 11-inch models with M2 and M3 chips, 13-inch iPad Air with M2 and M3, and iPad Pro 11-inch versions from the first generation through M4. The list also includes iPad Pro 12.9-inch models from the third through sixth generations and the 13-inch iPad Pro M4.
How to Update to iOS 18.7.7 for DarkSword Protection
Devices with Automatic Updates enabled will get iOS 18.7.7 automatically, without any manual steps. Users who have automatic updates turned off can manually install the update by opening Settings, then tapping General, and finally selecting Software Update.
Apple mentions that the fixes related to DarkSword were first released in 2025. Users on iOS 18 who haven't installed incremental updates may receive multiple vulnerability patches with this one update.
Thank you for being a Ghacks reader. The post Apple Releases iOS 18.7.7 Update to Extend DarkSword Exploit Protection to More iPhones and iPads appeared first on gHacks.
☞ El artículo completo original de Arthur Kay lo puedes ver aquí
