Posted by Alumni from TechCrunch
April 16, 2024
Trust Wallet's official X (previously Twitter) account wrote that 'we have credible intel regarding a high-risk zero-day exploit targeting iMessage on the Dark Web. This can infiltrate your iPhone without clicking any link. High-value targets are likely. Each use raises detection risk.' The tweet went viral, and has been viewed over 3.6 million times as of our publication. Because of the attention the post received, Trust Wallet hours later wrote a follow-up post. The wallet maker doubled down on its decision to go public, saying that it 'actively communicates any potential threats and risks to the community.' As it turns out, according to Trust Wallet's CEO Eowyn Chen, the 'intel' is an advertisement on a dark web site called CodeBreach Lab, where someone is offering said alleged exploit for $2 million in bitcoin cryptocurrency. The advert titled 'iMessage Exploit' claims the vulnerability is a remote code execution (or RCE) exploit that requires no interaction from the target '... learn more