New SparkCat malware in official app stores targets cryptocurrency wallet images

April 6, 20262 min read1 sources
Share:
New SparkCat malware in official app stores targets cryptocurrency wallet images

A new variant of the SparkCat trojan has been discovered on both the Apple App Store and Google Play Store. Security researchers report the malware masquerades as benign applications, including enterprise messengers and food delivery services, to bypass platform security checks and trick users into installation.

Once installed, the malware, being a trojan, is designed to perform undisclosed malicious actions in the background. While the full extent of this new variant's capabilities is being analyzed, its presence within functional applications allows it to operate without immediately alerting the user. The primary goal of such malware is typically to compromise user data or device security for the benefit of the attacker.

The potential impact for victims is significant, ranging from data theft to financial loss. The presence of this malware on official app stores highlights a persistent challenge for Google and Apple's security vetting processes. It also demonstrates a calculated effort by cybercriminals to compromise user devices through trusted distribution channels.

This discovery follows the initial identification of the SparkCat trojan over a year ago, indicating the malware's operators are continuously refining their techniques to evade detection. Mobile users are advised to be extremely cautious with app permissions and to scrutinize the legitimacy of applications before installation, even when downloading from official stores.

Share:

// SOURCES

// RELATED

Meta settles bellwether lawsuit alleging addictive design harmed student mental health

Meta's confidential settlement with a Washington school district marks a pivotal moment in the massive litigation against social media's psychological

6 min readMay 24

Huawei zero-day attack behind last year’s crash of Luxembourg's entire telecoms network

A sophisticated zero-day attack on Huawei routers allegedly caused Luxembourg's 2023 national telecom outage, raising severe global security concerns.

6 min readMay 23

MiniPlasma Windows 0-day enables SYSTEM privilege escalation on fully patched systems

A newly disclosed 0-day flaw, MiniPlasma, allows attackers to gain full SYSTEM control on patched Windows systems, with a public PoC accelerating risk

6 min readMay 18

The ransomware dilemma: why more than half of security chiefs would pay the price

A new survey reveals 56% of CISOs would consider paying a ransom, highlighting the intense pressure to restore operations despite official guidance.

6 min readMay 16