Skip to content

Crypto Theft Alert After iPhone Safari Attack

iPhone Safari Attack Raises Security Concerns for Crypto Users

  • Recent warnings indicate that malicious Safari pages could expose crypto private keys and seed phrases on iOS devices, affecting versions from iOS 13 to 26.5.
  • SlowMist has not confirmed any specific cryptocurrency theft linked to the attack but has identified vulnerabilities in iOS versions 18.4 through 18.6.2.
  • The attack reuses techniques from the previously disclosed DarkSword exploit chain, first identified by SlowMist’s team in early May.
  • A malicious webpage was found that could access Apple’s Keychain, potentially exposing information stored by crypto wallet applications.
  • SlowMist recommends users update their iOS devices and consider using Lockdown Mode for added security against potential threats.

Despite the lack of confirmed thefts, the vulnerabilities highlighted pose significant risks to users holding cryptocurrencies on affected devices. The malicious code can access sensitive information without user interaction, making it crucial for users to remain vigilant.

As of now, SlowMist emphasizes the importance of updating devices promptly due to potential exposure risks associated with the Safari attack targeting versions as recent as iOS 26.5. (Source)

Share