SlowMist Warns of Malicious SDK in ComeCome App
SlowMist founder Yu Xian (余弦) reported that the food delivery app ComeCome (comecome.icu) is suspected of using malicious SDKs to steal crypto assets, employing techniques similar to the FomoPeek attack. The malware exploits iOS kernel vulnerabilities to bypass sandbox protections. Users are advised to update to the latest iOS version and remain cautious of untrusted applications.
Summaries are written by AI from the original article. Not investment advice.