Close Menu
    Trending
    • Crypto Tops X’s Most-Muted List, and AI Slop May Be Why
    • Bitcoin DATs Capitulate—Could This Rare Signal Mark A Bottom?
    • Strategy (MSTR) Pops 9% As Bitcoin Price Gets Back To $78k
    • Dogecoin (DOGE) Whales Quietly Accumulate as Holdings Hit Record Levels
    • XRP’s Sentiment Turns Bullish, But What Is Stopping a Price Breakout?
    • Dogecoin Whales Return As DOGE Prints Its Third Major Morning Star
    • Crypto Market Still In Fear After Historical Lows, But Can Bitcoin And Ethereum Recover?
    • Exodus Bets Self‑Custody Can Power Everyday Life
    CryptoGate
    • Home
    • Bitcoin News
    • Cryptocurrency
    • Crypto Market Trends
    • Altcoins
    • Ethereum
    • Blockchain
    • en
      • en
      • fr
      • de
      • it
      • ja
    CryptoGate
    Home»Blockchain»Crypto Scams Can Trigger iOS Exploits
    Blockchain

    Crypto Scams Can Trigger iOS Exploits

    CryptoGateBy CryptoGateMarch 5, 2026No Comments4 Mins Read
    Share
    Facebook Twitter LinkedIn Pinterest Email


    Google’s Risk Intelligence Group (GTIG) is warning {that a} “new and highly effective” iOS exploit equipment, dubbed Coruna by its builders has been deployed on pretend finance and crypto web sites designed to lure iPhone customers into visiting pages that may silently ship exploits. For crypto holders, the danger is blunt: GTIG’s evaluation shows the campaigns finally targeted on harvesting seed phrases and pockets information from well-liked cell apps.

    Coruna targets Apple gadgets operating iOS 13.0 by way of iOS 17.2.1, bundling 5 full exploit chains and 23 exploits. GTIG says it recovered the equipment after monitoring its evolution throughout 2025, from early use by a buyer of a industrial surveillance firm, to “watering gap” assaults on compromised Ukrainian web sites, and at last to broad-scale distribution through Chinese language-language scam sites tied to a financially motivated actor it tracks as UNC6691.

    A Crypto Lure Designed For iPhones

    Within the scam-wave part, GTIG says it noticed the JavaScript framework behind Coruna deployed throughout a “very massive set” of faux Chinese language web sites largely themed round finance. One instance cited by GTIG is a pretend WEEX-branded crypto change web page that attempted to push guests onto an iOS machine—after which a hidden iFrame could be injected to ship the exploit equipment “no matter their geolocation.”

    Associated Studying

    The supply mechanics matter as a result of they blur the road between conventional phishing and outright machine compromise: in GTIG’s telling, merely arriving on the booby-trapped web page from a weak iPhone was sufficient to start the chain. The framework fingerprints the machine to determine mannequin and iOS model, then masses the suitable WebKit distant code execution exploit and a pointer authentication (PAC) bypass.

    GTIG tied one WebKit RCE it recovered to CVE-2024-23222, noting it was addressed by Apple in iOS 17.3 on Jan. 22, 2024.

    On the finish of the chain, GTIG says Coruna drops a stager it calls PlasmaLoader (tracked as PLASMAGRID) and describes it as targeted much less on basic surveillance options and extra on stealing monetary data. In response to GTIG, the payload can decode QR codes from photos saved on the machine and scan textual content blobs for BIP39 phrase sequences, together with key phrases similar to “backup phrase” and “checking account”, together with in Apple Memos, which it might probably then exfiltrate.

    Associated Studying

    The payload can be modular. GTIG says it might probably pull down and run further modules remotely, and that lots of the recognized modules are designed to hook capabilities and exfiltrate delicate data from widespread crypto pockets apps—amongst them MetaMask, Belief Pockets, Uniswap’s pockets, Phantom, Exodus, and TON ecosystem wallets similar to Tonkeeper.

    The broader arc was additionally flagged by cell safety agency iVerify, which revealed its personal findings across the similar time as GTIG’s report. “And that’s precisely what occurred once more right here, however on cell gadgets. Cellphone OEMs do pretty much as good a job as anybody can do…”

    What Crypto Customers Can Do Now

    Google says Coruna “is just not efficient towards the newest model of iOS,” and urges customers to replace. If updating isn’t attainable, GTIG recommends enabling Apple’s Lockdown Mode. GTIG additionally says it added the recognized web sites and domains to Google Protected Looking to assist scale back additional publicity.

    For crypto-native customers, the instant takeaway is sensible: cell wallets sit on the intersection of high-value belongings and high-frequency net visitors, which makes “visit-to-compromise” campaigns uniquely harmful. GTIG’s reporting suggests the rip-off funnel wasn’t nearly getting victims to attach wallets, it was about getting them onto the proper machine, on the proper iOS model, so exploitation might do the remaining.

    At press time, the overall crypto market cap stood at $2.45 trillion.

    Complete crypto market cap faces the 0.786 Fib, 1-week chart | Supply: TOTAL on TradingView.com

    Featured picture created with DALL.E, chart from TradingView.com



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    CryptoGate
    • Website
    • Pinterest

    Related Posts

    Bitcoin DATs Capitulate—Could This Rare Signal Mark A Bottom?

    May 2, 2026

    Dogecoin Whales Return As DOGE Prints Its Third Major Morning Star

    May 1, 2026

    Ethereum Shows Strength With $1 Billion In Buying Despite Hawkish Fed

    May 1, 2026

    Will It Break Out Of The Channel?

    May 1, 2026
    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    Whales Go All In As Bitcoin And Ethereum ETFs Record Massive $4.5 Billion Inflows

    October 5, 2025

    Crypto Analysts Spot Bullish Signal: Ethereum Targets $5K Milestone

    August 7, 2025

    Announcing the Ethereum Season of Internships

    August 11, 2025

    Is Ethereum Ready to Explode?

    January 15, 2026

    Latest Crypto Market News Today, September 20: CZ Binance Hyperliquid Killer Broke 1 USD | ASTER Crypto to Flip HYPE?

    September 20, 2025
    Categories
    • Altcoins
    • Bitcoin News
    • Blockchain
    • Crypto Market Trends
    • Crypto Mining
    • Cryptocurrency
    • Ethereum
    About us

    Welcome to cryptogate.info — your trusted gateway to the latest and most reliable news in the world of cryptocurrency. Whether you’re a seasoned trader, a blockchain enthusiast, or just curious about the future of digital finance, we’re here to keep you informed and ahead of the curve.

    At cryptogate.info, we are passionate about delivering timely, accurate, and insightful updates on everything crypto — from market trends, new coin launches, and regulatory developments to expert analysis and educational content. Our mission is to empower you with knowledge that helps you navigate the fast-paced and ever-evolving crypto landscape with confidence.

    Top Insights

    Ex-Ripple Dev Explains Why XRP Is 10x The Value Of LINK

    September 30, 2025

    SEC and CFTC Set to Work Together on Crypto Oversight

    January 25, 2026

    Fold Taps Stripe And Visa In Launch Of First Bitcoin-Only Credit Card

    September 24, 2025
    Categories
    • Altcoins
    • Bitcoin News
    • Blockchain
    • Crypto Market Trends
    • Crypto Mining
    • Cryptocurrency
    • Ethereum
    YouTube
    • Privacy Policy
    • Disclaimer
    • Terms and Conditions
    • Impressum
    • About us
    • Contact us
    Copyright © 2025 CryptoGate All Rights Reserved.

    Type above and press Enter to search. Press Esc to cancel.