iPhone

Crypto Wallets Under Attack: Malware Sneaks into App Store with OCR Trickery

Malicious SparkCat SDK sneaks into App Store apps, stealing cryptocurrency wallet recovery phrases using OCR technology.

Crypto Wallets at Risk as Malware Sneaks into App Store

Overview

  • Date: February 5, 2025
  • Source: Kaspersky researchers have identified a new malware campaign targeting iOS and Android devices.

Malware Details

  • Name: SparkCat
  • Function: Steals cryptocurrency wallet recovery phrases using optical character recognition (OCR).
  • Scope: Affects multiple apps on both app stores, with some identified but many remaining unnamed.
  • Downloads: Infected apps on Google Play had over 242,000 downloads.
  • First Detection: Found in a food delivery app called ComeCome, available in the UAE and Indonesia.

Threat Characteristics

  • Stealth: Malware has been active since March 2024, scanning users' photo galleries for wallet recovery phrases.
  • Communication: Uses a custom protocol built in Rust to communicate with attacker-controlled servers.
  • Legitimacy: Infected apps appeared legitimate, including food delivery and AI-powered messaging apps.

Actions Taken

  • App Removal: Apple and Google have removed most affected apps.
  • Security Advice: Users should delete suspicious apps, check crypto wallets for unauthorized access, and consider transferring funds to a new wallet if compromised.

Preventive Measures

  • Regular App Review: Check installed apps regularly and remove unfamiliar or unnecessary ones.
  • Mobile Security Apps: Use reputable security apps to detect potential threats.
  • Resetting Device: If compromised, delete suspicious apps, reset app permissions, and clear cached data. Ensure backups are clean before restoration.
#iPhone #malware #cybersecurity #cryptocurrency

Latest News

xBloom

xBloom Studio: The Coffee Maker That Puts Science in Your Cup

5 months ago

Motorola

Moto Watch Fit Priced at $200: Is It Worth the Cost for Fitness Enthusiasts?

5 months ago

iOS

iOS 18's Subtle but Significant Privacy Boost: Granular Contact Sharing Control

5 months ago

Google

Walmart Unveils Onn 4K Plus: The Affordable $30 Google TV Streaming Device

5 months ago

Apple

Judge Forces Apple to Comply: Epic Games' Fortnite Returns Hinge on Court Order

5 months ago

OnePlus

OnePlus Unveils the ‘Plus Key’: Is It Just an iPhone Knockoff or Something Revolutionary?

5 months ago