Firstpost
  • Home
  • Video Shows
    Vantage Firstpost America Firstpost Africa First Sports
  • World
    US News
  • Explainers
  • News
    India Opinion Cricket Tech Entertainment Sports Health Photostories
  • Asia Cup 2025
Apple Incorporated Modi ji Justin Trudeau Trending

Sections

  • Home
  • Live TV
  • Videos
  • Shows
  • World
  • India
  • Explainers
  • Opinion
  • Sports
  • Cricket
  • Health
  • Tech/Auto
  • Entertainment
  • Web Stories
  • Business
  • Impact Shorts

Shows

  • Vantage
  • Firstpost America
  • Firstpost Africa
  • First Sports
  • Fast and Factual
  • Between The Lines
  • Flashback
  • Live TV

Events

  • Raisina Dialogue
  • Independence Day
  • Champions Trophy
  • Delhi Elections 2025
  • Budget 2025
  • US Elections 2024
  • Firstpost Defence Summit
Trending:
  • PM Modi in Manipur
  • Charlie Kirk killer
  • Sushila Karki
  • IND vs PAK
  • India-US ties
  • New human organ
  • Downton Abbey: The Grand Finale Movie Review
fp-logo
Several iOS and Android apps infected with malware that steals crypto info, 'reads' screenshots
Whatsapp Facebook Twitter
Whatsapp Facebook Twitter
Apple Incorporated Modi ji Justin Trudeau Trending

Sections

  • Home
  • Live TV
  • Videos
  • Shows
  • World
  • India
  • Explainers
  • Opinion
  • Sports
  • Cricket
  • Health
  • Tech/Auto
  • Entertainment
  • Web Stories
  • Business
  • Impact Shorts

Shows

  • Vantage
  • Firstpost America
  • Firstpost Africa
  • First Sports
  • Fast and Factual
  • Between The Lines
  • Flashback
  • Live TV

Events

  • Raisina Dialogue
  • Independence Day
  • Champions Trophy
  • Delhi Elections 2025
  • Budget 2025
  • US Elections 2024
  • Firstpost Defence Summit
  • Home
  • Tech
  • Several iOS and Android apps infected with malware that steals crypto info, 'reads' screenshots

Several iOS and Android apps infected with malware that steals crypto info, 'reads' screenshots

FP Staff • February 6, 2025, 11:55:18 IST
Whatsapp Facebook Twitter

SparkCat’s is concerning because it has bypassed stringent app store reviews, infecting apps that seemed completely legitimate. SparkCat has been embedded in several apps across the Apple App Store and Google Play and is designed to steal sensitive cryptocurrency wallet data

Advertisement
Subscribe Join Us
Add as a preferred source on Google
Prefer
Firstpost
On
Google
Several iOS and Android apps infected with malware that steals crypto info, 'reads' screenshots
Apple and Google have removed most infected apps, but security experts caution that some might still be available through sideloading or other third-party sources. Image Credit: Reuters

A newly uncovered malware campaign is making waves by targeting cryptocurrency users on both iOS and Android platforms. Security experts at Kaspersky have identified a malicious software development kit (SDK) named SparkCat that has been embedded in several apps across the Apple App Store and Google Play. This malware is designed to steal sensitive cryptocurrency wallet recovery phrases by using optical character recognition (OCR) technology to scan screenshots stored on users’ devices.

STORY CONTINUES BELOW THIS AD

SparkCat’s stealthy nature is concerning because it has bypassed stringent app store reviews, infecting apps that seemed completely legitimate. One of the first infected apps discovered was a food delivery service called ComeCome, available in the UAE and Indonesia. Meanwhile, the Android versions of these infected apps have been downloaded over 242,000 times.

More from Tech
Apple voices concern over EU's alt-app store laws as first porn app for iPhone raises safety issues Apple voices concern over EU's alt-app store laws as first porn app for iPhone raises safety issues Beats Pill Wireless Bluetooth Speaker Review: The right dose of style and substance Beats Pill Wireless Bluetooth Speaker Review: The right dose of style and substance

Sneaky malware with advanced capabilities

Unlike traditional malware that spreads through unofficial app stores, SparkCat managed to infiltrate major app stores. Once installed, it silently scans users’ photo galleries for wallet recovery phrases. This sensitive data is then uploaded to a command-and-control (C2) server controlled by attackers, enabling them to gain full access to crypto funds remotely.

The malware uses a custom protocol built in Rust, which is rarely seen in mobile apps, adding another layer of sophistication. Apps compromised by SparkCat include seemingly harmless ones, such as food delivery services and AI-powered messaging platforms. Researchers revealed that SparkCat has been active since at least March 2024, but Apple and Google have not disclosed the full list of infected apps, leaving many users unaware of the threat on their devices.

What to do if you’re at risk

Apple and Google have removed most infected apps, but security experts caution that some might still be available through sideloading or other third-party sources. If you suspect you’ve installed one of these apps, it’s crucial to take action immediately. Deleting suspicious apps and thoroughly scanning your device can help mitigate the risk. Users are also advised to check their crypto wallets for any signs of unauthorised access.

To protect your assets, avoid storing recovery phrases in screenshots or photos, as attackers can easily extract this information using malware like SparkCat. If you believe your wallet has been compromised, transfer your funds to a new wallet with a fresh recovery phrase. However, only do so after ensuring your device is clean from malware. Resetting app permissions, clearing cached data, and reinstalling apps only from trusted sources are also recommended steps to minimise future risks.

Editor’s Picks
1
India most targeted nation for mobile malware attacks with 28% of all attacks, finds global report
India most targeted nation for mobile malware attacks with 28% of all attacks, finds global report
2
How Bitcoin and other cryptocurrency made a strong comeback in 2024
How Bitcoin and other cryptocurrency made a strong comeback in 2024

Staying secure in a digital age

With advanced threats like SparkCat making their way into trusted app stores, staying vigilant is more important than ever. Regularly updating your apps, using mobile security tools, and avoiding suspicious downloads can go a long way in keeping your crypto investments safe. As technology evolves, so do the methods used by attackers, making it essential to stay one step ahead in securing your digital assets.

Tags
Apple cybersecurity Google
End of Article
Latest News
Find us on YouTube
Subscribe
End of Article

Impact Shorts

America ready for self-driving cars, but it has a legal problem

America ready for self-driving cars, but it has a legal problem

US self-driving cars may soon ditch windshield wipers as the NHTSA plans to update regulations by 2026. State-level rules vary, complicating nationwide deployment. Liability and insurance models are also evolving with the technology.

More Impact Shorts

Top Stories

Russian drones over Poland: Trump’s tepid reaction a wake-up call for Nato?

Russian drones over Poland: Trump’s tepid reaction a wake-up call for Nato?

As Russia pushes east, Ukraine faces mounting pressure to defend its heartland

As Russia pushes east, Ukraine faces mounting pressure to defend its heartland

Why Mossad was not on board with Israel’s strike on Hamas in Qatar

Why Mossad was not on board with Israel’s strike on Hamas in Qatar

Turkey: Erdogan's police arrest opposition mayor Hasan Mutlu, dozens officials in corruption probe

Turkey: Erdogan's police arrest opposition mayor Hasan Mutlu, dozens officials in corruption probe

Russian drones over Poland: Trump’s tepid reaction a wake-up call for Nato?

Russian drones over Poland: Trump’s tepid reaction a wake-up call for Nato?

As Russia pushes east, Ukraine faces mounting pressure to defend its heartland

As Russia pushes east, Ukraine faces mounting pressure to defend its heartland

Why Mossad was not on board with Israel’s strike on Hamas in Qatar

Why Mossad was not on board with Israel’s strike on Hamas in Qatar

Turkey: Erdogan's police arrest opposition mayor Hasan Mutlu, dozens officials in corruption probe

Turkey: Erdogan's police arrest opposition mayor Hasan Mutlu, dozens officials in corruption probe

Top Shows

Vantage Firstpost America Firstpost Africa First Sports
Latest News About Firstpost
Most Searched Categories
  • Web Stories
  • World
  • India
  • Explainers
  • Opinion
  • Sports
  • Cricket
  • Tech/Auto
  • Entertainment
  • IPL 2025
NETWORK18 SITES
  • News18
  • Money Control
  • CNBC TV18
  • Forbes India
  • Advertise with us
  • Sitemap
Firstpost Logo

is on YouTube

Subscribe Now

Copyright @ 2024. Firstpost - All Rights Reserved

About Us Contact Us Privacy Policy Cookie Policy Terms Of Use
Home Video Shorts Live TV