{
  "$type": "site.standard.document",
  "bskyPostRef": {
    "cid": "bafyreiboirnderr7qfefiejhuowc6an4fxwmbq4b2ha7kxc5gujbwlxlaq",
    "uri": "at://did:plc:iir655mcoipvnewhnkv6fb3u/app.bsky.feed.post/3mhdvfdenp3x2"
  },
  "coverImage": {
    "$type": "blob",
    "ref": {
      "$link": "bafkreibffw5aanfqtkpox2nwpsmo3bzdd4sva2popmn6mqzcfpqsvmmmrm"
    },
    "mimeType": "image/png",
    "size": 816073
  },
  "path": "/blog/darksword-ios-exploit-kit-explained",
  "publishedAt": "2026-03-18T14:22:10.000Z",
  "site": "https://iverify.io",
  "tags": [
    "link"
  ],
  "textContent": "\nShortly after our publication on the Coruna exploit kit, a collaborating researcher at Lookout flagged a suspicious-looking URL possibly related to the threat actor from Russia linked with Coruna.",
  "title": "Inside DarkSword: A New iOS Exploit Kit Delivered Via Compromised Legitimate Websites"
}