iPhone screenshot reading malware appears for the first time
SparkCat malware has been discovered inside several apps on the App Store, capable of harvesting content from iPhone users' screenshots.
According to security researchers at Kaspersky, the SparkCat malware exists in apps that have already passed Apple's security checks to appear on the App Store. The apps found to be infected with SparkCat include ComeCome, WeTink, and AnyGPT. This is also the first time such a threat has been found in App Store apps.
Illustration of malware stealing digital wallets on the App Store. Photo: ReadWrite
Kaspersky's analysis found that the SparkCat-infected apps use Optical Character Recognition (OCR) to scan screenshots for sensitive information. Inside, they contain a malicious module that leverages Google's ML Kit OCR plug-in to analyze images and extract their content.
SparkCat specifically focuses on the 'seed' phrase used to recover digital wallets, allowing attackers to steal Bitcoin and other digital assets. Experts say that if the malware detects a screenshot related to a digital wallet, it will immediately transmit the captured data to the attacker's server.
SparkCat is believed to have been active since March 2024, but primarily on Android devices before recently appearing on iOS devices. In addition to harvesting content from screenshots, when installed, SparkCat-infected apps will request permission to access photos and scan for other important content.
Kaspersky said some SparkCat-infected apps are still available on the App Store. It is not yet clear whether this is a deliberate action by the developers or if they have been hacked.
Apple has not commented.
Kaspersky recommends that users do not save screenshots containing important content, such as recovery phrases for e-wallets, bank passwords, etc. in the Photo Gallery. Instead, they should use a password manager or store them in a safer place.
According to GizChina, iOS has historically been one of the most secure operating systems on mobile devices. Hackers also tend to attack Android devices more. However, things are changing recently as attackers are using more advanced methods to penetrate Apple platforms.
- 5 best ebook reader apps for iPhone
- Trick to take screenshots using iPhone's Action button
- As a busy person, apply 11 ways below to have time to read
- How to edit iPhone screenshots
- How to Take a Screenshot on Mac OS X
- How to Edit a Screenshot
- How to turn off the Samsung Galaxy S20 screen capture toolbar
- How to turn off screenshot preview on iOS 26
- 18 tips for screen capture tool on iOS 11 you should not ignore
- 8 best book reading software on iPhone
- Appears new malware HiatusRAT targeting enterprise routers
- iOS appears a new error that causes iPhone to crash only by voice
- How to take a screenshot on Windows 11
- How to take a screenshot?