Independent RWA research desk · Status: operationalMethodology & corrections · Submit a story
Incident record · Under review

Ledger CTO: Credential compromise

TL;DR: Charles Guillemet, Chief Technology Officer at Ledger, issued a public alert on September 21, 2026, regarding the DarkSword exploit chain targeting Safari. The threat chains six iOS security flaws that compromise the JavaScriptCore engine, bypass sandbox isolation, and exploit the system kernel. Google confirmed that the original vulnerabilities in the chain were patched starting ... Read more

StatusUnder review
Reported lossUnavailable
ChainNot specified
Confidence55%

Evidence boundary

Confidence describes the coverage of the available evidence. It is not a safety rating and does not guarantee that a protocol or asset is safe.

Sources

Record history

First seen: 2026-09-21T21:10:56.000Z. Last updated: 2026-09-22T01:34:32.855Z. Revision: 1.