SlowMist warns of iOS attack chain targeting private keys
SlowMist CISO 23pds reported that malicious actors have developed an attack chain targeting iOS users, affecting versions from iOS 13 to 26.5. The attack involves exploiting WebKit/JSC memory vulnerabilities via Safari to gain read/write capabilities, bypassing PAC, escaping the WebContent sandbox, and escalating to root privileges to steal Keychain and wallet data. Users are advised to update their devices immediately.
Summaries are written by AI from the original article. Not investment advice.