Home Crypto-stealing malware SparkCat targets iOS and Android users via app stores

Crypto-stealing malware SparkCat targets iOS and Android users via app stores

A new malware campaign is said to be specifically targeting crypto users on both iOS and Android. Security researchers at Kaspersky recently discovered a malicious software development kit, or SDK, called “SparkCat”.

The SDK has been secretly embedded in multiple apps available on both the Apple App Store and Google Play. The malware works by stealing sensitive cryptocurrency wallet recovery phrases. It does this by using optical character recognition (OCR) technology to scan and extract information from screenshots saved on a user’s device.

Unlike typical malware that spreads through unofficial app stores, SparkCat made its way into major app stores. Once installed, it quietly scans a user’s photo gallery, looking for wallet recovery phrases. If it finds anything useful, it uploads the data to a remote command-and-control (C2) server controlled by the attackers. This basically gives them full access to the victim’s crypto funds.

iOS and Android apps compromised by crypto-stealing malware

One of the first infected apps researchers found was a Chinese food delivery app called ComeCome, which was available in the UAE and Indonesia. Meanwhile, the Android versions of these compromised apps have already been downloaded more than 242,000 times.

The researchers wrote: “Judging by timestamps in malware files and creation dates of configuration files in GitLab repositories, SparkCat has been active since March 2024.”

They add that apart from ComeCome, a number of additional, unrelated apps covering a variety of subjects were also targeted. “We alerted Google to the presence of infected apps in its store,” they said.

SparkCat uses a custom protocol built in Rust, which is pretty unusual for mobile apps. A full list of the affected apps can be found at the end of Kaspersky’s report.

Most of the compromised apps have been removed from official stores, but security experts warn that some could still be floating around through sideloading or third-party sources. Last year, the app crypto-stealing app Yobit Pro raked in over $5 million before it was removed from the Play Store after three months.

If you think you might have installed one of these apps, it’s a good idea to delete anything suspicious and run a thorough security scan on your device. They recommend avoiding storing screenshots with sensitive information. Also, double-check your crypto wallets for any signs of unauthorized access, just to be safe.

ReadWrite has reached out to Apple and Google for comment.

Featured image: Canva

About ReadWrite’s Editorial Process

The ReadWrite Editorial policy involves closely monitoring the gambling and blockchain industries for major developments, new product and brand launches, game releases and other newsworthy events. Editors assign relevant stories to in-house staff writers with expertise in each particular topic area. Before publication, articles go through a rigorous round of editing for accuracy, clarity, and to ensure adherence to ReadWrite's style guidelines.

Suswati Basu
Tech journalist

Suswati Basu is a multilingual, award-winning editor and the founder of the intersectional literature channel, How To Be Books. She was shortlisted for the Guardian Mary Stott Prize and longlisted for the Guardian International Development Journalism Award. With 18 years of experience in the media industry, Suswati has held significant roles such as head of audience and deputy editor for NationalWorld news, digital editor for Channel 4 News and ITV News. She has also contributed to the Guardian and received training at the BBC As an audience, trends, and SEO specialist, she has participated in panel events alongside Google. Her…

Get the biggest iGaming headlines of the day delivered to your inbox

    By signing up, you agree to our Terms and Privacy Policy. Unsubscribe anytime.

    Gambling News

    Explore the latest in online gambling with our curated updates. We cut through the noise to deliver concise, relevant insights, keeping you informed about the ever-changing world of iGaming and its most important trends.

    In-Depth Strategy Guides

    Elevate your game with tailored strategies for sports betting, table games, slots, and poker. Learn how to maximize bonuses, refine your tactics, and boost your chances to beat the house.

    Unbiased Expert Reviews

    Honest and transparent reviews of sportsbooks, casinos and poker rooms crafted through industry expertise and in-depth analysis. Delve into intricacies, get the best bonus deals, and stay ahead with our trustworthy guides.