iOS app ComeCome suspected of stealing crypto assets via 'poisoning'
- —SlowMist: ComeCome allegedly uses a 'poisoning' scheme similar to FomoPeek
- —After installation, the app can remotely download malicious code
- —The attack targets installed wallets and sensitive data on iPhone
- —Users are advised to update iOS and avoid installing apps from untrusted sources
Why it matters: A new scheme for stealing crypto through ordinary iOS apps increases risk for retail holders and requires device updates.
Source: PANews