SparkKitty Malware Spreads Through Apple’s App Store and Google Play

NewsMon, 27 Jul 2026 15:05:00 UTC6 hours ago

Cyberint said SparkKitty is a cross-platform information stealer targeting iOS and Android users through malicious applications distributed via Apple’s App Store, Google Play and unofficial channels. Once installed, the malware seeks access to photo libraries, turning ordinary gallery permissions into a route for harvesting crypto recovery data.

The campaign is particularly dangerous for users who store wallet seed phrases, private information or account credentials in screenshots. SparkKitty can exfiltrate images and device data to attacker-controlled infrastructure, meaning a single exposed recovery phrase could give criminals control of an entire wallet even when the wallet application itself is not compromised.

Cyberint recommends removing suspicious applications, limiting unnecessary photo-library permissions and avoiding screenshots of seed phrases or other financial credentials. The next security test is whether mobile platforms and app developers can identify compromised software before distribution, because official app-store availability no longer guarantees that crypto users are protected from gallery-stealing malware.

… Continue reading the full article at the original source below.

Read from Source · crypto-economy.com ↗
This content is automatically aggregated. Full credit goes to the original publisher (crypto-economy.com).

Related