Daily Guardian UAEDaily Guardian UAE
  • Home
  • UAE
  • What’s On
  • Business
  • World
  • Entertainment
  • Lifestyle
  • Sports
  • Technology
  • Travel
  • Web Stories
  • More
    • Editor’s Picks
    • Press Release
What's On

Dubai Financial Audit Authority strengthens institutional partnerships through roundtable sessions to support governance and enhance performance efficiency

March 5, 2026

TCL shows off display with a blinding brightness that’s 5x higher than iPhone 17 Pro

March 5, 2026

القمة الدولية لطب الأطفال تعزز مكانتها الإقليمية مع إطلاق لقاح جديد لالتهاب السحايا في الإمارات

March 5, 2026

OpenAI releases ChatGPT 5.3 Instant and says it’s less “cringe”

March 5, 2026

How to share the location of your lost luggage with airlines using Android’s Find Hub

March 5, 2026
Facebook X (Twitter) Instagram
Finance Pro
Facebook X (Twitter) Instagram
Daily Guardian UAE
Subscribe
  • Home
  • UAE
  • What’s On
  • Business
  • World
  • Entertainment
  • Lifestyle
  • Sports
  • Technology
  • Travel
  • Web Stories
  • More
    • Editor’s Picks
    • Press Release
Daily Guardian UAEDaily Guardian UAE
Home » Screenshot-reading malware cracks iPhone security for the first time
Technology

Screenshot-reading malware cracks iPhone security for the first time

By dailyguardian.aeFebruary 6, 20253 Mins Read
Share
Facebook Twitter LinkedIn Pinterest Email

In the realm of smartphones, Apple’s ecosystem is deemed to be the safer one. Independent analysis by security experts has also proved that point repeatedly over the years. But Apple’s guardrails are not impenetrable. On the contrary, it seems bad actors have managed yet another worrying breakthrough.

As per an analysis by Kaspersky, malware with Optical Character Recognition (OCR) capabilities has been spotted on the App Store for the first time. Instead of stealing files stored on a phone, the malware scanned screenshots stored locally, analyzed the text content, and relayed the necessary information to servers.

The malware-seeding operation, codenamed “SparkCat,” targeted apps seeded from official repositories — Google’s Play Store and Apple’s App Store — and third-party sources. The infected apps amassed roughly a quarter million downloads across both platforms.

Interestingly, the malware piggybacked atop Google’s ML Kit library, a toolkit that lets developers deploy machine learning capabilities for quick and offline data processing in apps. This ML Kit system is what ultimately allowed the Google OCR model to scan photos stored on an iPhone and recognize the text containing sensitive information.


Please enable Javascript to view this content

But it seems the malware was not just capable of stealing crypto-related recovery codes. “It must be noted that the malware is flexible enough to steal not just these phrases but also other sensitive data from the gallery, such as messages or passwords that might have been captured in screenshots,” says Kaspersky’s report.

Among the targeted iPhone apps was ComeCome, which appears to be a Chinese food delivery app on the surface, but came loaded with a screenshot-reading malware. “This is the first known case of an app infected with OCR spyware being found in Apple’s official app marketplace,” notes Kaspersky’s analysis.

It is, however, unclear whether the developers of these problematic apps were engaged in embedding the malware, or if it was a supply chain attack. Irrespective of the origin, the whole pipeline was quite inconspicuous as the apps seemed legitimate and catered to tasks such as messaging, AI learning, or food delivery. Notably, the cross-platform malware was also capable of obfuscating its presence, which made it harder to detect.

The primary objective of this campaign was extracting crypto wallet recovery phrases, which can allow a bad actor to take over a person’s crypto wallet and get away with their assets. The target zones appear to be Europe and Asia, but some of the hotlisted apps appear to be operating in Africa and other regions, as well.











Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Keep Reading

TCL shows off display with a blinding brightness that’s 5x higher than iPhone 17 Pro

OpenAI releases ChatGPT 5.3 Instant and says it’s less “cringe”

How to share the location of your lost luggage with airlines using Android’s Find Hub

What’s the Artemis II crew doing while they wait for historic moon flight?

Apple MacBook Neo launched: Everything you need to know

The MacBook Neo cuts too frequently, and too deep

5 reasons to skip the MacBook Neo and buy an older MacBook Air instead

I was planning to get the Galaxy S26 Ultra, but these downgrades made me rethink

This smart device stops sneaky AI gadgets from listening to your conversations

Editors Picks

TCL shows off display with a blinding brightness that’s 5x higher than iPhone 17 Pro

March 5, 2026

القمة الدولية لطب الأطفال تعزز مكانتها الإقليمية مع إطلاق لقاح جديد لالتهاب السحايا في الإمارات

March 5, 2026

OpenAI releases ChatGPT 5.3 Instant and says it’s less “cringe”

March 5, 2026

How to share the location of your lost luggage with airlines using Android’s Find Hub

March 5, 2026

Subscribe to News

Get the latest UAE news and updates directly to your inbox.

Latest Posts

What’s the Artemis II crew doing while they wait for historic moon flight?

March 5, 2026

Apple MacBook Neo launched: Everything you need to know

March 5, 2026

The MacBook Neo cuts too frequently, and too deep

March 5, 2026
Facebook X (Twitter) Pinterest TikTok Instagram
© 2026 Daily Guardian UAE. All Rights Reserved.
  • Privacy Policy
  • Terms
  • Advertise
  • Contact

Type above and press Enter to search. Press Esc to cancel.