Get the latest tech news

First OCR Spyware Breaches Both Apple and Google App Stores To Steal Crypto Wallet Phrases


Kaspersky researchers have discovered malware hiding in both Google Play and Apple's App Store that uses optical character recognition to steal cryptocurrency wallet recovery phrases from users' photo galleries. Dubbed "SparkCat" by security firm ESET, the malware was embedded in several messaging a...

Kaspersky researchers have discovered malware hiding in both Google Play and Apple's App Store that uses optical character recognition to steal cryptocurrency wallet recovery phrases from users' photo galleries. The malware, active since March 2024, masquerades as an analytics SDK called "Spark" and leverages Google's ML Kit library to scan users' photos for wallet recovery phrases in multiple languages. The malware's creators appear to be Chinese-speaking actors based on code comments and server error messages, though definitive attribution remains unclear.

Get the Android app

Or read this on Slashdot

Read more on:

Photo of Google

Google

Photo of Apple

Apple

Photo of Crypto Wallet

Crypto Wallet

Related news:

News photo

Google launches Gemini 2.0 Pro, Flash-Lite and connects reasoning model Flash Thinking to YouTube, Maps and Search

News photo

Google Launches New Versions of Gemini, Including 'Thinking' Model

News photo

Apple's M2 MacBook Air drops to $800