The SparkKitty mobile spyware campaign is back in the spotlight, targeting iOS and Android apps to steal crypto wallet recovery phrases from phone galleries. The malware collects images and sends them to attacker-controlled servers. It has been active since at least 2024 and mainly targets Southeast Asia and China. Researchers recommend offline seed storage and immediate wallet migration if exposed.

Leave a Reply