FomoPeek iOS App Linked to $580K Crypto Heist Through Apple App Store
A malicious iOS application distributed through Apple's App Store has been linked to nearly $580,000 in stolen cryptocurrency. The app, named FomoPeek, contained kernel exploitation capabilities that allowed it to break out of Apple's sandbox and access sensitive wallet-related data.
SlowMist, a blockchain security firm, conducted an investigation into the incident and found that the malicious components were present in specific versions of the app released on September 9 and 12. However, these components were removed in version 1.3 released on September 17.
The exploit framework used by FomoPeek included eight attack methods and claimed to support a wide range of iOS versions, from 12.0 to 18.7.2 and 26.0 to 26.1. SlowMist's tracing indicates that the stolen funds were handled across multiple blockchain networks before being consolidated and transferred through intermediaries such as FixedFloat, KuCoin, and cce.cash.
SlowMist warns users to verify whether they have installed FomoPeek and which app version is currently on their devices. If a user still has an affected build installed, removing the application and updating to a later version would be a sensible immediate step, alongside reviewing wallet activity for any unusual transfers.