BlockBeats News, March 5th, according to Cointelegraph, Google's Threat Analysis Group recently revealed a new iOS exploit kit called "Coruna," which is being used in cryptocurrency theft activities targeting iPhone users with a focus on capabilities. The kit is primarily aimed at devices running iOS 13.0 to 17.2.1, including 23 exploit programs and 5 complete attack chains, some of which involve previously unknown vulnerabilities. It can execute attacks through spoofed cryptocurrency-related websites (such as phishing sites pretending to be the WEEX exchange).
Reportedly, when users with vulnerable iOS devices visit these malicious websites, the attack code runs automatically, scanning the device for sensitive information, especially text containing keywords such as mnemonic phrases, backup phrases, bank accounts, and attempts to steal assets from crypto apps like Uniswap and MetaMask.
Google researchers strongly recommend that iPhone users immediately update their devices to the latest iOS version. If unable to update, the "Lockdown Mode" on the Apple system should be enabled to enhance protection.
