Skip to content

Crypto Theft Hits $580K via Malicious App

Malicious iOS App FomoPeek Linked to $580K Cryptocurrency Theft

  • The malicious app, FomoPeek, was linked to approximately $579,984 in stolen crypto.
  • Two malicious modules exploited iOS vulnerabilities, allowing access to Keychain data.
  • Affected versions of the app were released on September 9 and September 12, with a clean version available from September 17.
  • The hacker address became active on September 15 and received funds across multiple blockchain networks.
  • Stolen funds were transferred through various services including FixedFloat and KuCoin.

An investigation by SlowMist revealed that the exploit framework supported iOS versions from iOS versions ranging from 12.0 to 18.7.2. The incident highlights significant security vulnerabilities within mobile applications that can lead to substantial financial losses for users.

The theft of nearly $580,000 underscores the risks associated with downloading unverified apps on platforms like the App Store. Users are advised to exercise caution when installing applications that may compromise their digital assets.

Share