Researchers from SlowMist have established a connection between the malicious iOS application FomoPeek and the theft of nearly $580,000 in USDT. According to the firm, versions 1.1 and 1.2 exploited vulnerabilities in the iOS kernel to escape the "sandbox" environment, allowing unauthorized access to Keychain and files from other applications.
The investigation, conducted alongside the security team at OKX, was initiated following user complaints. SlowMist claims that version 1.3, released on September 17, no longer contained any malicious components.