The iPhone app FomoPeek, distributed through Apple’s App Store, enabled attackers to steal nearly $580,000 in USDT by exploiting iOS system vulnerabilities. Versions 1.1 and 1.2 of the app contained an exploitation framework capable of breaking iOS sandbox protections and accessing private keys, seed phrases and credentials stored in Apple’s Keychain. Several cryptocurrency exchanges, including Binance, OKX, Gate, Bitget Wallet and Rabby, warned users and recommended uninstalling the app, updating iOS and moving funds to newly created wallets on uncompromised devices. Blockchain security firm SlowMist conducted the investigation, while blockchain analytics firm Salus identified the attacker address as 0x6d37f2C5e8F8546b648D317295565dA95975f4BB.
Source: Read the original article

