- Security experts warned that the technology could also be used to steal other delicate information captured in screenshots, like passwords.
- Apple conducts intense reviews of apps before launching them for the App Store, but the existence of such malware indicates a failure in the security checks of Apple.
- A spokesperson for Apple made a statement that we are keenly concerned about the safety that these types of apps make for EU users, particularly kids.
A cybersecurity firm Kaspersky revealed that Apple’s App Store has identified malware that has the potential of taking sensitive information from screenshots for the first time.
The malware, termed SparkCat, enrolls Optical Character Recognition technology to scan and recognize text within images stored on an iPhone. The main target comes into view to be recovery phrases for crypto wallets, certainly permitting attackers to steal Bitcoin and other virtual assets.
Kaspersky recognized the malicious code in various apps, including WeTink, AnyGPT, and ComeCome, which are still accessible on the App Store. The security company is still not sure whether the infection was because of a supply chain attack or an intentional action by developers.
After downloading these malicious apps on your system, it requests access to the photo libraries of the users, mostly masked as routine permission for chat support. Once the access is granted, the app initiates scanning stored images using an OCR plug-in based on Google’s ML Kit library.
The failure of Apple
When a pertinent image, like a screenshot of a crypto wallet key is recognized, it is directly sent to a remote server managed by the attackers. The malware, which has been active since March last year, was mainly found in Android and PC-based hacks but has now made its way to iOS devices.
Security experts warned that the technology could also be used to steal other delicate information captured in screenshots, like passwords. Apple conducts intense reviews of apps before launching them for the App Store, but the existence of such malware indicates a failure in the security checks of Apple.
Since the apps request access that seems necessary for their functionality, their malicious nature may not have been quickly clear.
The similar incident
The same incident happened when an app made its way to the iPhone after the EU’s Digital Markets Act made it necessary for the firm to permit third-party stores on smartphones.
Apps available in third-party stores in the EU are analyzed by Apple for malware and device compatibility but are not inscribed for quality or functionality, as per the regulations of the company for developers.
A spokesperson for Apple made a statement that we are keenly concerned about the safety that these types of apps make for EU users, particularly kids. He further added that this app and others similar to this will chip away at consumer trust and confidence in our ecosystem that we have worked for more than ten years to make the best in the world.
