SparkCat Malware Uses OCR to Extract Crypto Wallet Recovery Phrases from Images

Feb 6, 2025

A new malware campaign dubbed SparkCat has leveraged a suit of bogus apps on both Apple’s and Google’s respective app stores to steal victims’ mnemonic phrases associated with cryptocurrency wallets. 
The attacks leverage an optical character recognition (OCR) model to exfiltrate select images containing wallet recovery phrases from photo libraries to a command-and-control (C2) server,

Get Free Report & Network Analysis

Please check your email for the free report.