iPhone Devices Under Threat as New iOS Trojan That Targets Facial Recognition Data Reported

The trojan affecting iPhone devices was discovered by cybersecurity firm Group-IB, which also named the malware.

Advertisement
Written by Akash Dutta, Edited by Manas Mitul | Updated: 16 February 2024 20:42 IST
Highlights
  • The iPhone targeting malware was ported from Android to iOS
  • It is said to be the first known version of the GoldDigger malware
  • It is part of a cluster of banking trojans targeting the APAC region

Group-IB stated that it has already informed Apple and the company is likely working on a fix

Photo Credit: Lucas Hoang/Unsplash

iPhone devices are being targeted by a rare trojan called GoldDigger, a cybersecurity firm has reported. The malware is part of a cluster of aggressive banking trojans that have been affecting users in the Asia-Pacific (APAC) region. The earlier spotted malware group was only affecting Android users, but a new version has now been unearthed that specifically targets iOS and steals facial recognition data and other sensitive information from devices. This development is rare since Apple is known to be proactive in releasing security patches for its operating system.

Cybersecurity firm Group-IB was behind the discovery of the iOS trojan. The group has been tracking it since October 2023, when it first found a new variant of Android malware and named it GoldDigger. The malicious programme was found to be a banking trojan that steals financial information and targets banking apps, e-wallets, and crypto-wallets. It was first spotted in Vietnam but later identified as a cluster that was affecting the entire APAC region.

In its findings, the group noted that “a new sophisticated mobile Trojan specifically aimed at iOS users, dubbed GoldPickaxe.iOS by Group-IB” has been discovered. The malware is capable of stealing facial recognition data, identity documents, and can even intercept SMS.

Advertisement

The cybersecurity group also claimed that the threat actors behind the GoldDigger malware likely take advantage of face-swapping AI tools to create deepfakes based on the Face ID data. Then, using a combination of identity documents, access to SMS, and Face ID data, the hacker behind the programme can gain access to the victim's iPhone and their banking apps. The threat actors then make repeated bank transactions to steal the victim's money. As per Group-IB, this method of monetary theft was previously unseen.

Advertisement

It was reported that the malware was earlier distributed through the TestFlight app, which lets developers beta-test new features before rolling them out, however, it was quickly removed by Apple. Now, it is being spread through a multi-level social engineering technique which involves tricking the victims into installing a Mobile Device Management (MDM) profile.

The trojan is suspected to be connected with an organised Chinese-speaking cybercrime group and is mainly affecting Vietnam and Thailand. There is a possibility that it might spread to other regions as well. The cybersecurity group stated that it has informed Apple about the trojan, and it is likely that the iPhone maker is already in the process of creating a fix.

Advertisement


Is the Samsung Galaxy Z Flip 5 the best foldable phone you can buy in India right now? We discuss the company's new clamshell-style foldable handset on the latest episode of Orbital, the Gadgets 360 podcast. Orbital is available on Spotify, Gaana, JioSaavn, Google Podcasts, Apple Podcasts, Amazon Music and wherever you get your podcasts.
Affiliate links may be automatically generated - see our ethics statement for details.
 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Further reading: iPhone, Malware, iOS, Apple, Cybersecurity
Advertisement

Related Stories

Popular Mobile Brands
  1. Pixel 10 Series Gets Price Cuts During Google's End of Year Sale: See Offers
  2. MacBook Air (2025) With M4 Chip Available at This Discounted Price
  3. Motorola Edge 70 With 5,000mAh Battery Launched in India at This Price
  4. Logitech MX Master 4 Launches in India With These Features
  5. Motorola Edge 70 First Impressions
  6. OnePlus 15R Storage Options Leaked: Here's How Much It Might Cost in India
  7. Apple Fitness+ Service Is Now Available in India: See Features
  8. Vivo S50, S50 Pro Mini With Snapdragon Chips Launched at These Prices
  9. Mrs Deshpande OTT Release Date: Madhuri Dixit's Starrere to Premiere on This Date
  10. Redmi Note 15 5G Chipset Revealed Ahead of January 6 India Launch
  1. Redmi Note 15 5G Chipset Confirmed Ahead of January 6 Launch in India: Expected Features, Specifications
  2. Lenovo Idea Tab Plus Launched in India With 12.1-Inch Display, 10,200mAh Battery: Price, Specifications
  3. The End of 16GB RAM Phones? AI Boom Forces Smartphone Makers to Bring Back 4GB Models
  4. Xiaomi 17 Ultra Tipped to Launch Alongside Redmi Turbo 5 Series, New Wearables
  5. Mrs Deshpande OTT Release Date: Madhuri Dixit’s Psychological Thriller Premieres on This Date
  6. Knives Out Now Streaming on Lionsgate Play: What You Need to Know
  7. The Copenhagen Test OTT Release Date: When and Where to Watch it Online?
  8. Tell Me Softly Out on OTT: Everything You Need to Know About This Spanish Teen Romance Film
  9. Vivo S50 Pro Mini Launched With Snapdragon 8 Gen 5 SoC, Vivo S50 Tags Along: Price, Specifications
  10. Clair Obscur: Expedition 33 Gets New 'Thank You' Update After Winning at The Game Awards
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.