BTC $83,251.67 -1.48%
ETH $2,679.09 -0.23%
BNB $762.45 -2.41%
XRP $1.49 -1.70%
SOL $118.29 -3.00%
TRX $0.3353 +0.43%
DOGE $0.0937 -3.50%
ADA $0.2469 -3.72%
BCH $309.02 -6.61%
LINK $15.48 +10.07%
HYPE $86.72 -4.36%
AAVE $148.33 -3.75%
SUI $1.14 -10.31%
XLM $0.2290 +4.91%
ZEC $1,465.64 -7.20%
AAPL $338.39 -0.51%
AMZN $246.44 -1.16%
GOOGL $342.40 -0.18%
MSFT $508.89 -1.27%
META $717.34 -2.67%
NVDA $228.60 +1.65%
TSLA $357.71 -3.68%
SNDK $1,705.14 -2.78%
INTC $115.29 -5.38%
SPCX $145.85 -2.54%
MU $1,050.32 -2.74%
AMD $607.04 -3.32%
BTC $83,251.67 -1.48%
ETH $2,679.09 -0.23%
BNB $762.45 -2.41%
XRP $1.49 -1.70%
SOL $118.29 -3.00%
TRX $0.3353 +0.43%
DOGE $0.0937 -3.50%
ADA $0.2469 -3.72%
BCH $309.02 -6.61%
LINK $15.48 +10.07%
HYPE $86.72 -4.36%
AAVE $148.33 -3.75%
SUI $1.14 -10.31%
XLM $0.2290 +4.91%
ZEC $1,465.64 -7.20%
AAPL $338.39 -0.51%
AMZN $246.44 -1.16%
GOOGL $342.40 -0.18%
MSFT $508.89 -1.27%
META $717.34 -2.67%
NVDA $228.60 +1.65%
TSLA $357.71 -3.68%
SNDK $1,705.14 -2.78%
INTC $115.29 -5.38%
SPCX $145.85 -2.54%
MU $1,050.32 -2.74%
AMD $607.04 -3.32%

wm

All
Article
Flash

SlowMist: FomoPeek versions 1.1–1.2 contain malicious code, which may lead to the leakage of private keys and mnemonic phrases

SlowMist released a security warning stating that it has recently received multiple reports of FomoPeek users' assets being stolen. After a joint investigation with the OKX security team, it was found that some affected users had previously installed or used FomoPeek versions 1.1 to 1.2, which contained malicious code. SlowMist stated that there are modules in FomoPeek unrelated to normal business, one of which includes a kernel exploit framework targeting the iOS system, supporting eight different attack methods that can automatically select the exploitation method based on device model and iOS version. Affected systems include iOS 12 to 18.7 and iOS 26 to 26.1. If the exploitation is successful, the application may break through the iOS sandbox and access and decrypt Keychain data, leading to the leakage of private keys, mnemonic phrases, login credentials, and other sensitive files. In addition, FomoPeek also connects to hidden servers unrelated to its public services and can receive remote commands. SlowMist indicated that its analysis of captured plaintext traffic shows that the related attack functions are currently enabled and will run automatically on a regular basis. SlowMist recommends that users who have installed or used FomoPeek versions 1.1 to 1.2 immediately check for any anomalies in their assets, generate new private keys and mnemonic phrases on trusted devices that have never installed the application, and transfer assets to new accounts as soon as possible, while also upgrading to the latest iOS version and not continuing to use or reinstall FomoPeek.

In Texas, cryptocurrency ATM scam losses reached $56.8 million in 2025, and lawmakers are considering over-regulatory measures

The FBI submitted data disclosure to the legislative committee, revealing that losses related to cryptocurrency kiosks in Texas amounted to $56.8 million in 2025, involving 1,179 complaints, making it the highest loss among all states in the U.S. The total number of related complaints nationwide was 13,460, with reported losses increasing by 58% year-on-year to $389 million. Cryptocurrency kiosks can accept cash and exchange it for cryptocurrency, typically set up at gas stations and convenience stores.Statistics from the Texas Tribune show that there are about 4,000 such devices in Texas, where scammers induce victims to withdraw money from their bank accounts and deposit it into the machines. Jesse Saucillo, Deputy Commissioner of the Texas Department of Banking, stated that once funds are transferred out, recovering them is nearly impossible, as the money typically flows into unhosted wallets and then into mixers. He added that AI-generated police and state agency impersonation content makes phone inducements more deceptive.Data from AARP indicates that since 2023, approximately 30 states in the U.S. have enacted laws related to cryptocurrency kiosks. Indiana fully banned such devices in March, followed by Tennessee and Minnesota. Texas House Committee Chairman Rep. Cole Hefner stated that the state will consider measures beyond regulatory scope.

OKX, in collaboration with Elliptic, SlowMist, and OttoSec, released the Web3 Security and Risk Control Report for the first half of 2026

According to official news, OKX, in collaboration with Elliptic, SlowMist, and OttoSec, has released the "Web3 Security and Risk Control Report for the First Half of 2026." The report points out that the focus of Web3 attacks is gradually shifting from smart contract code to more complex scenarios such as signature processes, user devices, operational infrastructure, and AI Agents.Data shows that in the first half of 2026, the OKX risk control system intercepted over 5.7 million high-risk transactions, including approximately 2.41 million transactions related to hacking and theft, about 1.48 million transactions related to phishing, and around 990,000 transactions related to fraud. The OKX Web3 on-chain intelligence label library currently has over 1 billion labels, covering more than 420 chains, and has integrated capabilities such as address screening, transaction monitoring, and sanction address control into infrastructures like DEX and Exchange OS.In addition, in terms of user protection, OKX has intercepted over 7 million visits to risky websites, completed over 200,000 device risk assessments, identified over 60,000 high-risk apps, and intercepted or alerted on over 4 million high-risk signature operations. The report also introduces the "risk control pre-positioning" design in scenarios such as Exchange OS, Outcomes, RWA, and Agentic Wallet.
app_icon
ChainCatcher Building the Web3 world with innovations.