Wu Shuo learned that in response to the DarkSword attack program leak risk highlighted by 23pds, the Chief Information Security Officer of SlowMist, Yu Xian, posted on Twitter that they have obtained some in-the-wild attack samples. It is currently confirmed that these target older versions of iOS on iPhone, Safari browsers, and cryptocurrency wallet users. The related phishing websites include fake porn live streams, TRON energy stations, refund processes, vulnerability alerts, and more.


If older iPhone users open such websites with Safari and do not close them, then unlock their wallet app to use it, their plaintext private keys may be stolen by malicious JavaScript code embedded in the webpage.
TRX-0.78%
View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
Add a comment
Add a comment
No comments
  • Pinned