FomoPeek App Flagged for Malicious Code Exposing iOS Users to Asset Theft Risk
Key Takeaways
- •Blockchain security firm SlowMist and exchange OKX have flagged versions 1.1 and 1.2 of the FomoPeek app as containing malicious code that endangers iOS users' assets.
- •The malicious code includes a kernel exploitation framework that can access sensitive information such as private keys and login credentials on affected devices.
- •The app can connect to hidden servers and execute remote commands, with users on iOS versions 12.0–18.7 and 26.0–26.1 facing heightened exposure.
- •Users who installed the compromised versions are urged to set up fresh accounts on trusted devices, generate new private keys, and promptly update to the latest iOS release.
- •Because a private key controls wallet assets and cannot be changed like a password, security teams recommend replacing compromised credentials rather than continuing to use accounts tied to the app.

Blockchain security firm SlowMist and cryptocurrency exchange OKX have flagged the FomoPeek app, versions 1.1 and 1.2, for containing malicious code that puts iOS users at risk of asset theft. The alert, surfaced by CryptoTwitter commentator @SlowMist_Team via a post on X, indicates that code embedded in the app can expose sensitive data such as private keys and login credentials — information that governs access to users' wallets and accounts. Users are strongly advised to act promptly to secure their assets and prevent unauthorized access.
What Happened
Recent reports highlight significant security concerns surrounding the FomoPeek app, particularly versions 1.1 and 1.2. Security teams from SlowMist and OKX discovered that the application contains malicious code capable of exploiting iOS vulnerabilities. The code includes a kernel exploitation framework that can access sensitive data on affected devices. Users running older iOS versions face a higher level of risk, and immediate action is recommended to safeguard their accounts and assets.
Key Details
- The FomoPeek app contains malicious code capable of exploiting iOS vulnerabilities.
- Users on iOS versions 12.0–18.7 and 26.0–26.1 are particularly exposed.
- The app connects to hidden servers and can execute remote commands.
- Affected users are advised to create new accounts on trusted devices and generate new private keys.
- Immediate updates to the latest iOS version are recommended to strengthen device security.
Background
FomoPeek is an application designed to provide specific services to its users, but it has now come under scrutiny due to the severity of its security flaws. The alert stems from the app's potential to compromise sensitive user information, drawing attention from security teams focused on user safety and asset protection across the crypto space. Kernel-level exploits are regarded as among the most serious classes of mobile vulnerabilities because they can grant broad access to a device's operating system. For crypto users, the exposure of private keys is what makes this incident particularly serious: a private key is the credential that controls the assets in a wallet and cannot be changed like a password, which is why the recommended response is to generate new keys on a trusted, updated device rather than continue using accounts tied to the compromised app.
The Road Ahead
Users should closely monitor updates regarding the FomoPeek app and its security status, including any follow-up advisories published by SlowMist and OKX. Risks remain high for those who have installed the compromised versions, and ongoing discussion is likely to center on the effectiveness of the recommended security measures. Further guidance is expected as security teams and the wider community continue to assess the situation. Users should remain vigilant for unusual account activity, keep their devices updated, and take proactive steps to secure their assets.
This article is for informational purposes only and does not constitute financial advice.
Source: Coinfomania