Odaily Planet Daily News 23pds, Chief Information Security Officer of SlowMist, posted on the X platform that the Pegasus organization is attacking through the zero-click vulnerability of the iOS system. The attacker uses the iMessage account to send the PassKit attachment of the malicious image to the victim to trigger the attack. At present, the exploit chain has been made public, and Apple users can be infected "without clicking and interacting". The vulnerability has been exploited, and Apple has urgently released an update patch.
23pds recommends that practitioners in the cryptocurrency industry immediately update Apple products in use.