Kucoin FomoPeek App Exploit Exposes iOS Users to Data Theft
Article Content
- •FomoPeek app versions 1.1–1.2 contain malicious code targeting iOS devices.
- •Users are advised to delete the app and update their iOS immediately.
- •The DarkSword exploit toolkit poses additional risks to iOS security.
A security incident involving the FomoPeek app has been disclosed, affecting iPhone and iPad users with versions 1.1–1.2. The app contains malicious code that exploits iOS vulnerabilities, allowing unauthorized access to sensitive data across the device. Users who have installed the app are advised to delete it and update their iOS to the latest version. The DarkSword exploit toolkit has also been mentioned as a related threat, capable of exploiting unpatched vulnerabilities through malicious links. Both threats highlight the importance of maintaining device security and avoiding untrusted apps. Users are urged to create new wallets on clean devices if they have used FomoPeek. The incident has garnered attention from multiple security firms, including SlowMist, indicating a broader concern for iOS device security.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (3)
Following this threat?
Track DarkSword and Binance in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Iranian State Actors Deploy CHOSEN BRICK Spyware Against Dissidents On September 15, 2026, the UK, US, and Netherlands issued a joint advisory regarding a spyware campaign attributed to Iranian state actors targeting dissidents, activists, and journalists. The malware, known as CHOSEN BRICK, is delivered through spear-phishing attacks on messaging platforms like WhatsApp and Telegram.…
Malicious Packagist Themes Exploit iPhones for Spyware and Crypto Theft Thirteen malicious Composer theme packages on Packagist have been identified, targeting unpatched iPhones by injecting JavaScript into Vietnamese movie and comic streaming sites. The injected code facilitates mobile ad fraud and gambling redirects, while also deploying a WebKit-to-kernel exploit chain that installs…