Bitcoin Forum
May 21, 2024, 06:24:03 PM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1]
  Print  
Author Topic: 🚨 CRITICAL 🚨 Trust wallet claims malicious vulnerability in iOS  (Read 125 times)
taufik123 (OP)
Legendary
*
artcontest
Online Online

Activity: 2534
Merit: 1730


Duelbits.com


View Profile
April 15, 2024, 09:07:47 PM
 #1

Looking at the Twitter(X) homepage, I found a warning from Trust wallet that there is a vulnerability found in iOS.

Trust Wallet claims a high-risk exploit targeting iMessage is available on the Dark Web.

The exploit could infiltrate an iPhone without the user having to click on the link.

WHAT TO DO: Turn off iMessage immediately.

Navigate to Settings -> Messages -> turn off iMessage.
Keep it until Apple issues a security patch.



https://twitter.com/TrustWallet/status/1779961167537979775

███████████████████████████
███████▄████████████▄██████
████████▄████████▄████████
███▀█████▀▄███▄▀█████▀███
█████▀█▀▄██▀▀▀██▄▀█▀█████
███████▄███████████▄███████
███████████████████████████
███████▀███████████▀███████
████▄██▄▀██▄▄▄██▀▄██▄████
████▄████▄▀███▀▄████▄████
██▄███▀▀█▀██████▀█▀███▄███
██▀█▀████████████████▀█▀███
███████████████████████████
.
.Duelbits.
▄▄█▄▄░░▄▄█▄▄░░▄▄█▄▄
███░░░░███░░░░███
░░░░░░░░░░░░░
░░░░░░░░░░░░
▀██████████
░░░░░███░░░░
░░░░░███▄█░░░
░░██▌░░███░▀░░██▌
█░██░░███░░░██
█▀▀▀█▌░███░░█▀▀▀█▌
▄█▄░░░██▄███▄█▄░░▄██▄
▄███▄
░░░░▀██▄▀
.
REGIONAL
SPONSOR
███▀██▀███▀█▀▀▀▀██▀▀▀██
██░▀░██░█░███░▀██░███▄█
█▄███▄██▄████▄████▄▄▄██
██▀ ▀███▀▀░▀██▀▀▀██████
███▄███░▄▀██████▀█▀█▀▀█
████▀▀██▄▀█████▄█▀███▄█
███▄▄▄████████▄█▄▀█████
███▀▀▀████████████▄▀███
███▄░▄█▀▀▀██████▀▀▀▄███
███████▄██▄▌████▀▀█████
▀██▄█████▄█▄▄▄██▄████▀
▀▀██████████▄▄███▀▀
▀▀▀▀█▀▀▀▀
.
EUROPEAN
BETTING
PARTNER
FinneysTrueVision
Sr. Member
****
Offline Offline

Activity: 1666
Merit: 373


Top Crypto Casino


View Profile WWW
April 16, 2024, 06:51:49 AM
 #2

After looking at this tweet, it doesn’t seem like this vulnerability is actively being exploited and may not even be real.
https://twitter.com/EowynChen/status/1779968264510050731

Somebody on the dark web is asking for $2 million in BTC for this exploit, which they claim will allow somebody to take control over someone’s iPhone. If an exploit is worth that much money you would think the seller might be better off keeping it a secret and getting rich by exploiting the vulnerability for their own benefit.

On the website selling the exploit, there is virtually no information — just some placeholders with misspelled text for other kinds of exploits. It is likely to be a scam and would not be too concerned about this.


█████████████████████████
████▐██▄█████████████████
████▐██████▄▄▄███████████
████▐████▄█████▄▄████████
████▐█████▀▀▀▀▀███▄██████
████▐███▀████████████████
████▐█████████▄█████▌████
████▐██▌█████▀██████▌████
████▐██████████▀████▌████
█████▀███▄█████▄███▀█████
███████▀█████████▀███████
██████████▀███▀██████████
█████████████████████████
.
BC.GAME
▄▄░░░▄▀▀▄████████
▄▄▄
██████████████
█████░░▄▄▄▄████████
▄▄▄▄▄▄▄▄▄██▄██████▄▄▄▄████
▄███▄█▄▄██████████▄████▄████
███████████████████████████▀███
▀████▄██▄██▄░░░░▄████████████
▀▀▀█████▄▄▄███████████▀██
███████████████████▀██
███████████████████▄██
▄███████████████████▄██
█████████████████████▀██
██████████████████████▄
.
CASINO
.
SPORTS
.
RACING
OFFICIAL PARTNER OF
Argentina NT
CLOUD9
█░░░░░░█░░░░░░█
▀███▀░░▀███▀░░▀███▀
▀░▀░░░░▀░▀░░░░▀░▀
░░░░░░░░░░░░
▀██████████
░░░░░███░░░░
░░█░░░███▄█░░░
░░██▌░░███░▀░░██▌
░█░██░░███░░░█░██
░█▀▀▀█▌░███░░█▀▀▀█▌
▄█▄░░░██▄███▄█▄░░▄██▄
▄███▄
░░░░▀██▄▀


▄▄████▄▄
▄███▀▀███▄
██████████
▀███▄░▄██▀
▄▄████▄▄░▀█▀▄██▀▄▄████▄▄
▄███▀▀▀████▄▄██▀▄███▀▀███▄
███████▄▄▀▀████▄▄▀▀███████
▀███▄▄███▀░░░▀▀████▄▄▄███▀
▀▀████▀▀████████▀▀████▀▀
Yamane_Keto
Sr. Member
****
Offline Offline

Activity: 476
Merit: 487



View Profile WWW
April 16, 2024, 04:43:34 PM
 #3

I searched a little for the details of this vulnerability and the best thing I found was that it is comparable to Pegasus spyware, if that vulnerability true then Trust Wallet is supposed to encrypt sensitive data, and therefore even if high-risk zero-day vulnerability occurs, customers’ funds are supposed to be safe as long as they use a strong password to encrypt the wallet file.
Orpichukwu
Sr. Member
****
Offline Offline

Activity: 490
Merit: 314



View Profile
April 16, 2024, 10:52:14 PM
 #4

Somebody on the dark web is asking for $2 million in BTC for this exploit, which they claim will allow somebody to take control over someone’s iPhone. If an exploit is worth that much money you would think the seller might be better off keeping it a secret and getting rich by exploiting the vulnerability for their own benefit.
Yes, it's very possible for someone to have data that is worth a large amount of money and still want to sell it out to another person on the dark web.
 
I have read stories of hackers who extract information, sell it to those who will make use of it, get their money, and take off. Those who buy the data will be the ones who make use of it in their own ways to exploit the data owners.
 
I don't believe the person who placed the bid has access to such data; if not, they could have been pricing on that speculation on the internet already, but if such data does indeed exist, then I don't doubt the selling, as they can actually sell it to someone who can make better use of the information than them.

.
Duelbits
▄▄█▄▄░░▄▄█▄▄░░▄▄█▄▄
███░░░░███░░░░███
░░░░░░░░░░░░░
░░░░░░░░░░░░
▀██████████
░░░░░███░░░░
░░░░░███▄█░░░
░░██▌░░███░▀░░██▌
█░██░░███░░░██
█▀▀▀█▌░███░░█▀▀▀█▌
▄█▄░░░██▄███▄█▄░░▄██▄
▄███▄
░░░░▀██▄▀
.
REGIONAL
SPONSOR
███▀██▀███▀█▀▀▀▀██▀▀▀██
██░▀░██░█░███░▀██░███▄█
█▄███▄██▄████▄████▄▄▄██
██▀ ▀███▀▀░▀██▀▀▀██████
███▄███░▄▀██████▀█▀█▀▀█
████▀▀██▄▀█████▄█▀███▄█
███▄▄▄████████▄█▄▀█████
███▀▀▀████████████▄▀███
███▄░▄█▀▀▀██████▀▀▀▄███
███████▄██▄▌████▀▀█████
▀██▄█████▄█▄▄▄██▄████▀
▀▀██████████▄▄███▀▀
▀▀▀▀█▀▀▀▀
.
EUROPEAN
BETTING
PARTNER
Pages: [1]
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!