FomoPeek crypto stealer: malicious code found in iOS app for stealing seed phrases
Researchers from SlowMist have discovered malicious code in the FomoPeek iOS app that intercepts seed phrases from cryptocurrency wallets. In confirmed cases, private keys were leaked from users who installed versions 1.1 and 1.2 of the app. iOS devices running firmware versions 12.0-18.7 and 26.0-26.1 are at risk. Two third-party modules were found in these versions, including the DarkSword frameworks for iOS kernel exploitation, with eight attack methods that can be automatically selected. If the injection is successful, the app could access Keychain data and read files from other applications. SlowMist also reported a connection between the app and hidden servers that could send remote commands. The attacking functionality is already activated and runs automatically. FomoPeek users are advised to check their accounts for suspicious activity, create a new account with a new seed phrase and private key, and transfer their assets. It is recommended to update iOS to the latest version, not to reinstall the app, and to contact official support if signs of compromise are detected.
-- Price
This content is provided for general informational purposes only and doesn't constitute financial, investment, legal, or tax advice. Any events, rewards, online promotions, or related information mentioned herein should not be considered a recommendation, solicitation, or invitation to purchase, sell, trade, or otherwise deal in any crypto assets. Crypto assets are highly volatile and may result in loss. The availability of WEEX services, products, and related events may vary by region. You are responsible for ensuring that your participation is in accordance with applicable local laws and regulations.
You may also like

Absa Launches Crypto Custody for Businesses in Africa

EU Targets 11 Video Games and Their Virtual Currencies, Crypto Exempted

Tradewiz Loses Approximately $459,000 in Theft Linked to 27 Transactions

Peter Todd Joins MARA as Lead for Private Mempool Slipstream

Targeted, Tied Up, Extorted: The Dark Side of Crypto Fortunes in France

The First NEAR Protocol Spot ETF Launched in the U.S.

Chainlink Helps Financial Institutions Access Swift Blockchain Ledger

Spain says self custody crypto does not need Form 721 reporting

Ledger CTO disputes 30% Bitcoin quantum risk estimate
![Crypto and Security: A Look Back at the First Cyber Forum [ADAN & LSW3]](/public-static/39_645e9f2336.png?format=avif)
Crypto and Security: A Look Back at the First Cyber Forum [ADAN & LSW3]

Zano Rolls Back to Before the 6th Hard Fork, Deleting One Month of On-Chain Transaction Records

Bitcoin Faces Quantum Threat, Researchers Propose Solutions

Bitcoin BIP138 proposal aims to secure multisig wallets with encrypted backups

Polymarket partners with OpenWorlds on AI trading agents

Crypto: The Fake Coinbase Advisor Sentenced After a $16 Million Theft

SlowMist: Unconfirmed iPhone Safari Attack Leads to Theft of Crypto Assets

European Regulators Warn of Quantum Risk by 2030

IBM Digital Asset Haven Connects to Swift Shared Ledger, Supporting Tokenized Deposit Transactions

FinTra Holding Launches the Universal Payment Network (UPN) Consortium

Brevo Hacking: After Trezor, Paymium Customer Data Leaked

Analysis questions Satoshi's 1.1M BTC ownership claims

AhnLab Blockchain Company Launches Enterprise Digital Asset Platform 'TRUSS'

Why truly decentralized DeFi needs no legal exemption according to SEC Commissioner Hester Peirce

iPhone Security Alert: Vulnerability Exposes Your Cryptocurrencies

France crypto home attack steals €40,000: Report

Chengming Technology Holds Zhipu Technology Accountable for Unauthorized Data Uploads

Slow Fog: Black and Gray Industry Attack Chain Affects iOS Users from 13 to 26.5

Slow Mist Releases FomoPeek App Version 1.1–1.2 Theft Asset Risk Warning

Haruko Faces Cyber Attack, 15 Clients Affected, Some Funds Stolen







