SlowMist: Official FOMO iOS App Carried Malware Aimed at Crypto Theft
AI مارکیٹ کا خلاصہ
SlowMist reported the official FOMO iOS app distributed on the App Store (Sept 9–17) contained malware resembling DarkSword, with potential to exfiltrate seed phrases and private keys. Because the app was promoted by influencers, exposure could be broad, raising near-term counterparty and self-custody risk perceptions. Guidance that uninstalling/updating may be insufficient may drive reactive wallet migrations and heighten security-focused risk-off sentiment across crypto.
اثر کی سطح
● درمیانہ
متاثرہ اثاثے
BTC/USDT-0.53%
AI تجزیاتی سمجھ · BTC/USDTAI تجزیاتی سمجھ
▼ Bearish
ابھی ٹریڈ کریں
⚠️ AI سے تیار کردہ تجزیاتی سمجھ خبروں کے مواد پر مبنی ہے اور صرف معلوماتی مقاصد کے لیے فراہم کی گئی ہے۔ یہ سرمایہ کاری کا مشورہ نہیں ہے اور نہ ہی BingX کے خیالات کی نمائندگی کرتی ہے۔ سرمایہ کاری میں رسک شامل ہے۔ براہ کرم ذمہ داری سے ٹریڈ کریں۔
Huo Xing Cai Jing reported that blockchain security firm SlowMist issued an alert on Sept. 23, saying the official FOMO iOS app was found to include malware capable of stealing crypto assets. The affected builds were distributed via the App Store from Sept. 9 to Sept. 17.
SlowMist said the malicious component shows attack behavior similar to the DarkSword malware family, with the potential to steal users' seed phrases and private keys. Because the FOMO app was promoted by crypto influencers, SlowMist warned that some users may have downloaded the compromised versions.
The firm added that simply updating or uninstalling the app may not fully remove the risk. Users who installed the impacted versions should assume any related seed phrases, private keys, and sensitive credentials have been exposed and take corresponding security steps.
SlowMist Chief Information Security Officer Shān Zhang has also flagged broader iOS risks, saying versions 13 through 26.5 may be exposed to malicious Safari links that exploit memory corruption flaws in WebKit and JavaScriptCore. According to Zhang, attackers could use these weaknesses to gain read/write access at the JavaScript layer, bypass pointer authentication, break out of the WebContent sandbox, escalate kernel privileges, and ultimately steal encryption keys and wallet data.