The FOMO app was available on Apple's App Store from September 9 to 17 containing a malicious module capable of stealing mnemonic phrases and private keys. SlowMist Chief Information Security Officer Shan Zhang identified the malware as DarkSword, which exploits memory corruption vulnerabilities in WebKit and JavaScriptCore within Safari to target crypto assets. The vulnerability affects iOS versions 13 through 26.5, enabling attackers to extract sensitive wallet data. SlowMist warns that users who downloaded the app should treat all associated mnemonic phrases, private keys, and credentials as compromised, even if the application has since been updated or deleted.