Security firm iVerify discovered P7 DarkSword, an iPhone spyware variant capable of scanning for cryptocurrency wallet applications and extracting imToken wallet data. The malware can collect credentials, notes, and app files from compromised devices, potentially exposing sensitive wallet information. The threat communicates with an attacker-controlled server every 15 seconds and targets Apple’s Keychain system where passwords are stored. Researchers have not confirmed stolen cryptocurrency or established whether P7 can bypass Apple’s latest security patches.
Source: Read the original article

