NewsLayer

Install NewsLayer

Get the app experience — one tap from your home screen, instant loads and breaking-news alerts.

NewsLayer.com
LatestDaily BriefMarkets
NewsLayer PulseLIVE₿BTC$80,070+0.59%ΞETH$2,511+2.35%◎SOL$106.28+4.30%✕XRP$1.43+2.07%ÐDOGE$0.0913+7.93%₳ADA$0.223+5.93%Total Cap$2.85T+1.38%24H Vol$110.8BLayer Index58 Neutral
BreakingHow to Secure an iPhone Crypto Wallet Against Malware and Web-Based Exploits9 saat önce
Markets
HomeCryptoPolicy

Crypto|Policy

breaking

How to Secure an iPhone Crypto Wallet Against Malware and Web-Based Exploits

iPhone users running outdated iOS versions may face security risks after researchers linked poisoned website packages to an iOS exploit chain capable of accessing protected phone data and wallet secrets.

cryptonews.net

Publisher

Sep 5, 2026 at 6:59 PM UTC · Updated 7 saat önce · 4 dk okuma

How to Secure an iPhone Crypto Wallet Against Malware and Web-Based Exploits
Image via cryptonews.net

Key Signal

13 malicious Packagist themes

Last Updated

7 saat önce

Çevriliyor…

iPhone users running outdated iOS versions may face security risks after researchers linked poisoned website packages to an iOS exploit chain capable of accessing protected phone data and wallet secrets.

Socket, a cybersecurity platform, disclosed the campaign on after finding 13 malicious themes on Packagist. The packages infected websites rather than phones. As a result, avoiding fake wallet apps was not enough to protect a vulnerable iPhone from an affected Safari page.

What Are the Malicious Packagist Packages Designed to Do?

The packages posed as themes for OphimCMS and KKPhim, which support Vietnamese streaming sites. They appeared under five publishers: vsmov, vsphim, haiau009, chilltvcms, and ophimcms.

After a site operator installed a poisoned theme, hostile JavaScript appeared on its pages. Mobile visitors could receive gambling redirects or injected advertisements. The iPhone branch also checked the iOS version and loaded a matching exploit.

Socket’s investigation found two WebKit entry points. CVE-2025-31277 targeted iOS 18.4 and 18.5. CVE-2025-43529 covered iOS 18.6.

Later stages escaped WebKit’s protected process and reached the iOS kernel. That access allowed the payload to read data normally blocked from a website.

Article Intelligence

Topics

government-policycrypto

Related Coverage

CryptoCrypto Services Under Attack: Hacker Attacks Rise 2.5 Times3 saat önce · 6 min readCryptoCrypto Services: Hacker Attacks Up 2.5 Times3 saat önce · 6 min read
View all related

Sponsored

Ad
House — Advertise on NewsLayer
NewsLayerLearn more

NewsLayer Premium

Unlock deeper intelligence.

Ad-free reading, exclusive research, and real-time onchain insights.

Go Premium
NewsLayer.com

The front page of the onchain economy. Crypto, Web3 and regulation intelligence — live prices, original research and policy tracking in one layer.

Follow on XTelegram

News

  • Latest News
  • The Daily Brief
  • Crypto
  • DeFi
  • Policy
  • Web3
  • Blockchain
  • Explainers

Markets

  • Market News
  • Layer Index
  • Live Charts
  • DeFi Protocols
  • Regulation Tracker
  • Regulation Radar

Company

  • About NewsLayer
  • Advertise
  • PR Publication
  • Become an Author
  • Our Authors
  • Create Account
  • Sign in

Resources

  • Research
  • NewsLayer Originals
  • My Feed
  • Search
  • AI Sector
  • Quantum Sector

NewsLayer Premium

Read the full layer.

Unlock premium intelligence, original research and an ad-free reading experience.

  • Premium Intelligence briefings
  • Ad-free reading experience
  • Members-only research & data
Go Premium

© 2026 NewsLayer.com — The front page of the onchain economy

Privacy Policy·Terms of Service
NewsLayer

Get the signal, not the noise.

Markets, regulation and onchain intelligence in a 5-minute morning read — plus breaking alerts and Layer Index flips as they happen.

The Daily Brief

Breaking alerts

Index flips

Free · No spam · Unsubscribe anytime