SlowMist CISO 23pds said Apple released a critical security update that likely patches a zero-day vulnerability used to drain cryptocurrency wallets. Apple acknowledged reports that the flaw may have been exploited in extremely sophisticated attacks targeting specific individuals on iOS versions before iOS 27.
Why it matters
The reported wallet theft links a device-level security flaw to direct crypto risk. The attacks were described as targeted, not widespread, but users on affected iOS versions should install Apple's update.
Market impact
The disclosure is a reminder that wallet security depends on the devices used to access crypto, not only on blockchain protocols or wallet software. Apple did not say in the cited statement that the vulnerability was used specifically to steal cryptocurrency.
Frequently asked questions
-
What did SlowMist's CISO say Apple's update addresses?
SlowMist CISO 23pds said the update likely patches a zero-day vulnerability used to drain cryptocurrency wallets.
-
Who may have been targeted by the attacks?
Apple acknowledged reports of extremely sophisticated attacks against specific targeted individuals.
-
Which iOS versions were affected?
The reported issue affected iOS versions before iOS 27.
-
Does the disclosure describe the attacks as widespread?
No. The reported attacks were described as targeted against specific individuals, not as widespread.
-
Why does a device vulnerability matter for crypto wallets?
A compromised or vulnerable device used to access a wallet can put crypto at risk, even when the blockchain itself is secure.
WuBlockchain