Screenshot-reading malware cracks iPhone security for the first time

4 hours ago 1
A person holding an iPhone in their hand. Bagus Hernawan / Unsplash

In the realm of smartphones, Apple’s ecosystem is deemed to be the safer one. Independent analysis by security experts has also proved that point repeatedly over the years. But Apple’s guardrails are not impenetrable. On the contrary, it seems bad actors have managed yet another worrying breakthrough.

As per an analysis by Kaspersky, malware with Optical Character Recognition (OCR) capabilities has been spotted on the App Store for the first time. Instead of stealing files stored on a phone, the malware scanned screenshots stored locally, analyzed the text content, and relayed the necessary information to servers.

The malware-seeding operation, codenamed “SparkCat,” targeted apps seeded from official repositories — Google’s Play Store and Apple’s App Store — and third-party sources. The infected apps amassed roughly a quarter million downloads across both platforms.

An app listed on the App Store infected by malware.Kaspersky

Interestingly, the malware piggybacked atop Google’s ML Kit library, a toolkit that lets developers deploy machine learning capabilities for quick and offline data processing in apps. This ML Kit system is what ultimately allowed the Google OCR model to scan photos stored on an iPhone and recognize the text containing sensitive information.

Please enable Javascript to view this content

But it seems the malware was not just capable of stealing crypto-related recovery codes. “It must be noted that the malware is flexible enough to steal not just these phrases but also other sensitive data from the gallery, such as messages or passwords that might have been captured in screenshots,” says Kaspersky’s report.

Among the targeted iPhone apps was ComeCome, which appears to be a Chinese food delivery app on the surface, but came loaded with a screenshot-reading malware. “This is the first known case of an app infected with OCR spyware being found in Apple’s official app marketplace,” notes Kaspersky’s analysis.

One of the iPhone apps infected by OCR malware.Kaspersky

It is, however, unclear whether the developers of these problematic apps were engaged in embedding the malware, or if it was a supply chain attack. Irrespective of the origin, the whole pipeline was quite inconspicuous as the apps seemed legitimate and catered to tasks such as messaging, AI learning, or food delivery. Notably, the cross-platform malware was also capable of obfuscating its presence, which made it harder to detect.

The primary objective of this campaign was extracting crypto wallet recovery phrases, which can allow a bad actor to take over a person’s crypto wallet and get away with their assets. The target zones appear to be Europe and Asia, but some of the hotlisted apps appear to be operating in Africa and other regions, as well.

Nadeem Sarwar

Nadeem is a tech journalist who started reading about cool smartphone tech out of curiosity and soon started writing…

The OnePlus 13 has already set an impossible standard for Android phones in 2025

A person taking the OnePlus 13 out of a pocket.

Four weeks into the first month of the year, one thing is clear about smartphones in 2025: this is going to be an extremely competitive year. Whereas some phone makers used to wait until February or March to launch their flagships for the first half of the year, the early launch of the Snapdragon 8 Elite last year has seen all companies launch their products early.

Honor launched the Magic 7 Pro two weeks ago, followed by Samsung with the Galaxy S25 series last week. Before both of these, however, was the launch of the OnePlus 13, a phone that I think is setting the standard for smartphones in 2025 in so many ways.

Read more

There’s a secret way to free up 7GB of storage in your iPhone

iPhone 16 Pro homescreen with an Apple Intelligence Notification Summary

If you constantly run out of space on your iOS device, you could free up as much as 7GB of data just by disabling Apple Intelligence. The iOS 18.3, iPadOS 18.3, and macOS Sequoia 15.3 updates released this past week enabled Intelligence by default, but it isn't a requirement — and if you don't want to use it or would prefer the free space, you can turn it off.

On average, Apple Intelligence requires around 7GB of storage space regardless of platform. The reason for this relatively large requirement -- especially when the operating system itself takes up a decent amount of storage -- is because Apple runs the Intelligence features on-device. This ensures greater levels of security, but it also means less memory. This is a 7GB requirement per device, according to MacRumors.

Read more

Here’s our closest look at the iPhone SE 4 yet

iPhone SE 4 leak by Majin Bu.

In recent months, there have been conflicting rumors about what to expect from the upcoming iPhone SE 4. However, the latest rumor may have clarified some of these uncertainties.

Leaker Majin Bu (via MacRumors) recently took to X to share mockup images (and a video) of the next budget iPhone. According to these images, the iPhone SE 4 will feature a traditional notch instead of the Dynamic Island that previous reports suggested. To the left of the notch, there appears to be a selfie camera and a single-lens rear camera. The images also indicate that the phone will have a glass back and an aluminum frame.

Read more

Read Entire Article