PANews reported on September 23, citing Protos, that SlowMist Chief Information Security Officer Shan Zhang warned that malware called DarkSword is targeting iPhone users, exploiting memory corruption vulnerabilities in WebKit and JavaScriptCore in Safari to steal crypto assets. Affected iOS versions include iOS 13 through iOS 26.5, allowing attackers to obtain sensitive data such as wallet keys. In addition, the official FOMO app was available for download on Apple's App Store from September 9 to 17, and SlowMist found that it contained a malicious module capable of stealing mnemonic phrases and private keys. SlowMist stated that even if users update or delete the app, they should still treat the relevant mnemonic phrases, private keys, and sensitive credentials as compromised.
Source link







