logo

SparkKitty Malware Sneaks into Trusted Mobile Apps to Harvest Sensitive Photos

ID: b20d9564-a07c-591a-8d7a-42b516854e4a

STIX ID: report--b20d9564-a07c-591a-8d7a-42b516854e4a

Feed Name: Zimperium Blog

Threat Score
65/100

Date Published: 2025-08-22

Date Updated: 2026-05-01

...
...

SparkKitty is a stealthy mobile malware discovered hidden inside apparently legitimate Android and iOS apps (video, sharing clones, and crypto utilities). Once installed it silently scans and exfiltrates users' photo libraries, potentially exposing sensitive items such as crypto recovery phrases and ID images; the report warns of data theft but provides limited details on indicators, scale, or mitigation.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.