Kaspersky Threat Research has identified a new data-stealing Trojan malware called SparkCat that is available on both the App Store and Google Play. The malware uses optical recognition to steal sensitive data from images, such as passwords and cryptocurrency recovery phrases. It’s notable as the first case of optical recognition-based malware in the App Store and targets users primarily in the UAE and several European and Asian countries.

IXON VPN Vulnerabilities Let Attackers Gain Access to Windows & Linux Systems
A security assessment by Shelltrail revealed three critical vulnerabilities in the IXON VPN client, allowing privilege escalation on Windows and Linux. Identified as CVE-2025-ZZZ-01, CVE-2025-ZZZ-02,