Binance warned back in March that older iOS versions had a vulnerability ⚠️
This time, FomoPeek may have exploited a previously identified high-risk iOS vulnerability — DarkSword:
Users don’t need to download a specific app. Just click a link on a Safari webpage,
malicious code will run and steal data from the user’s iPhone
At the time, Binance, Google, and Apple all reminded iOS users to upgrade their systems:
In March, Google’s research on the iOS vulnerability DarkSword
Google observed that attackers could obtain, not limited to:
Emails, call logs, contacts
Device Keychain
Photos, notes, iCloud Drive
Safari history, bookmarks, and cookies
Cryptocurrency wallet data
A list of installed apps and all app files
In an April security bulletin, Apple reminded users to upgrade to the latest system
However, it did not mention the vulnerability name or the scope of the leak—only urged users to upgrade as soon as possible
In other words, FomoPeek is just an entry point, making users believe that the app downloaded from the App Store is safe
Even if the app isn’t installed, clicking an unknown link in Safari could still result in malicious code being executed
So, all iOS users below version 26 should update to iOS 26.7 or iOS 27
#iOS #安全漏洞