iPhone

Crypto Wallets Under Attack: Malware Sneaks into App Store with OCR Trickery

Malicious SparkCat SDK sneaks into App Store apps, stealing cryptocurrency wallet recovery phrases using OCR technology.

Crypto Wallets at Risk as Malware Sneaks into App Store

Overview

  • Date: February 5, 2025
  • Source: Kaspersky researchers have identified a new malware campaign targeting iOS and Android devices.

Malware Details

  • Name: SparkCat
  • Function: Steals cryptocurrency wallet recovery phrases using optical character recognition (OCR).
  • Scope: Affects multiple apps on both app stores, with some identified but many remaining unnamed.
  • Downloads: Infected apps on Google Play had over 242,000 downloads.
  • First Detection: Found in a food delivery app called ComeCome, available in the UAE and Indonesia.

Threat Characteristics

  • Stealth: Malware has been active since March 2024, scanning users' photo galleries for wallet recovery phrases.
  • Communication: Uses a custom protocol built in Rust to communicate with attacker-controlled servers.
  • Legitimacy: Infected apps appeared legitimate, including food delivery and AI-powered messaging apps.

Actions Taken

  • App Removal: Apple and Google have removed most affected apps.
  • Security Advice: Users should delete suspicious apps, check crypto wallets for unauthorized access, and consider transferring funds to a new wallet if compromised.

Preventive Measures

  • Regular App Review: Check installed apps regularly and remove unfamiliar or unnecessary ones.
  • Mobile Security Apps: Use reputable security apps to detect potential threats.
  • Resetting Device: If compromised, delete suspicious apps, reset app permissions, and clear cached data. Ensure backups are clean before restoration.
#iPhone #cybersecurity #cryptocurrency #malware

Latest News

Apple

iPhone 18 Pro: The Next Big Design Revolution Revealed

52 minutes ago

Windows

Microsoft Sneaks 10 Essential Upgrades Into New Windows 11 Insider Build

52 minutes ago

WhatsApp

WhatsApp for iOS Unveils Sleek New Profile Tab in Latest Update

2 hours ago

Samsung

Samsung Pulls the Plug on Its $3,000 Tri-Fold Experiment After Only Three Months

2 hours ago

Physics

CERN's Upgraded Smasher Hits Milestone with 80th Particle Discovery

2 hours ago

Samsung

Samsung Admits Privacy Comes at a Cost for Galaxy S26 Ultra’s Stunning Screen

3 hours ago