惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

Application and Cybersecurity Blog
Application and Cybersecurity Blog
月光博客
月光博客
Y
Y Combinator Blog
P
Proofpoint News Feed
Forbes - Security
Forbes - Security
美团技术团队
博客园 - Franky
Attack and Defense Labs
Attack and Defense Labs
T
Tor Project blog
T
The Blog of Author Tim Ferriss
C
CERT Recently Published Vulnerability Notes
U
Unit 42
人人都是产品经理
人人都是产品经理
V2EX - 技术
V2EX - 技术
L
Lohrmann on Cybersecurity
罗磊的独立博客
博客园 - 聂微东
C
Cybersecurity and Infrastructure Security Agency CISA
N
News and Events Feed by Topic
大猫的无限游戏
大猫的无限游戏
Exploit-DB.com RSS Feed
Exploit-DB.com RSS Feed
H
Help Net Security
Security Archives - TechRepublic
Security Archives - TechRepublic
Microsoft Azure Blog
Microsoft Azure Blog
Threat Intelligence Blog | Flashpoint
Threat Intelligence Blog | Flashpoint
W
WeLiveSecurity
P
Privacy International News Feed
爱范儿
爱范儿
J
Java Code Geeks
Blog — PlanetScale
Blog — PlanetScale
The Cloudflare Blog
T
Threat Research - Cisco Blogs
云风的 BLOG
云风的 BLOG
F
Full Disclosure
CTFtime.org: upcoming CTF events
CTFtime.org: upcoming CTF events
Hugging Face - Blog
Hugging Face - Blog
T
Tenable Blog
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
Hacker News: Ask HN
Hacker News: Ask HN
TaoSecurity Blog
TaoSecurity Blog
B
Blog RSS Feed
Google Online Security Blog
Google Online Security Blog
D
Docker
Martin Fowler
Martin Fowler
I
Intezer
阮一峰的网络日志
阮一峰的网络日志
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
S
Security Affairs
T
Tailwind CSS Blog
IT之家
IT之家

9to5Mac

Apple permanently closing three US stores, here’s when [Updated] Apple Arcade just added 4 new ad-free games with these titles now available At least for now, Liquid Glass in Pixelmator Pro remains a Creator Studio exclusive Apple @ Work: How to add an existing Mac to Apple Business Manager without wiping it Hands-on: SkyDex turns your daily weather check into a Pokémon adventure App Store fight continues as Apple and Epic clash over court-ordered stay OpenAI says to update Mac apps including ChatGPT and Codex as security precaution Apple TV in-person ‘experience’ coming later this month in LA New iPhone Fold leaks cover ‘Ultra’ name, launch timing, more Report: Apple tops global smartphone market for first time in Q1 as overall shipments drop Car Keys in Apple Wallet coming soon to major new vehicle brand Apple previews AI, accessibility, and AirPods Pro 3 research for CHI 2026 April 10, 2026 – Apple Store closures, more VSCO report explores how photographers perceive, adopt, and actually use AI XChat, X’s standalone messaging app, launching soon with these features Apple TV has three shows with finales this week, here’s what’s ending iOS 26.4 adds setting to let you change new Liquid Glass effect Hands-on: Satechi’s 3-in-1 Qi2 charger brings 25W of power with a clean Apple aesthetic [Video] iOS 27 adding new ‘Siri’ app to Home Screen: Here are the rumored features Deals: All 15-inch M5 MacBook Air models $150 off, Series 11 $99 off, Nomad leather iPhone 17 cases, more Amazon launches ‘Prime Video Ultra’ with new features, higher price How the Mac changed the way I clear mental clutter YouTube Premium is getting a US price hike of up to $4/month Tribit StormBox Micro 3: My favorite travel speaker just got better and cheaper FBI used iPhone notification data to retrieve deleted Signal messages Adobe’s low-processing camera app expands support to select iPads and the iPhone 17e New Apple TV movie starring Keanu Reeves now available to stream Apple collector showcases 50 years of Mac startup sounds [Video] WhatsApp is bringing Status updates to the top of the Chats tab iOS 26’s Messages app got a big upgrade for an essential feature Survival horror game Cronos: The New Dawn coming natively to Apple Silicon Macs Report: Apple saw 9% growth in Mac shipments during Q1 2026 OpenAI introduces $100/month Pro plan aimed at Codex users, here’s what it includes Instagram now lets you edit your comments after posting Apple updates Creator Studio apps including Logic Pro and Pixelmator Pro, more Leaker gives iPhone 18 Pro updates on two design changes Researchers detail how a prompt injection attack bypassed Apple Intelligence protections DIY MacBook Neo upgrade can boost the SSD to 1TB using iPhone parts iPhone Fold visualized, HomeKit Adaptive Temperature, MacBook Neo shortages - 9to5Mac Ex-Apple engineers create an AI button that looks like an iPod Shuffle – but can’t explain why iPhone Fold unboxing video is a fake, not the real thing Apple releases macOS 26.4.1 software update, here’s what’s new Apple TV just added two exciting new series to future lineup Anthropic scales up with enterprise features for Claude Cowork and Managed Agents April 9, 2026 – iOS 26.4.1 released, more Deals: 1TB M5 MacBook Air $150 off, Apple Thunderbolt 5 cables up to 48% off, Magic Keyboard Amazon low, more Spotify’s newest feature lets you focus on audio without distractions Europe’s largest Apple museum opens to the public in the Netherlands iOS 26.4.1 now available for iPhone users, here’s what’s fixed Discounted M5 MacBook Pro hits Apple refurb store with key storage distinction [U] Report: iPhones accounted for half of the top 10 best-selling smartphones in Q4 2025 iPhone 18 Pro’s rumored camera feature could prove that less is more So long, Llama: Meta unveils Muse Spark AI with Contemplating mode Apple seeks internal data from Samsung in South Korea in ongoing antitrust case Stolen Device Protection now enabled by default for enterprise devices in iOS 26.4.1 You can now buy official repair parts for MacBook Neo, iPhone 17e, Studio Display XDR, more iOS 26.4.1 fixes iPhone bug that stopped iCloud data from syncing, including Apple Passwords iPadOS 26.4 adds convenient new feature for iPad power users ChatGPT just added its first streaming video app, here’s what it can do Overcast launches podcast transcripts in new app update for iPhone Day One journaling app introduces ‘Gold’ plan with AI summaries and Daily Chat Amazon says these 13 Kindle devices won’t be able to get new books soon CarPlay in iOS 26 has my top new Apple Music feature, here’s how to use it Astropad unveils Workbench for Mac: ‘Remote desktop made for the AI era’ Shrinking creator explains finale ending, confirms season 4 cast and time jump Deals: 24GB M5 MacBook Air all-time low $150 off, 16-inch M5 Pro MacBook $199 off, black Apple USB-C cables, more Car Keys in Wallet recently launched for two major vehicle brands, with more soon April 8, 2026 – New CarPlay apps, iPhone Fold reports iPhones on space missions are as valuable as they are fun Insta360 jumps on the rear iPhone screen trend with its new Snap monitor Apple TV unveils return of acclaimed London crime thriller Apple very cautious about iPhone Ultra sales, as Samsung wins major concession FBI says cyber fraud cost Americans $21B last year – here’s what you need to know Apple gets bottom ranking for repairability of iPhones and MacBooks – with one exception Apple Arcade could use an ‘always allow’ feature that’s separate from App Store Apple TV: Six-part Vietnam docuseries picks up 3 News & Documentary Emmy nominations This clever Shortcut lets you download latest Artemis II images directly from NASA [U: updated shortcut] Vision Pro is about to get Steam Link app for gaming, download beta here New video reveals iPhone 18 Pro Max, iPhone Fold dummy models WhatsApp’s improved CarPlay experience is now available to all iPhone users 9to5Mac Overtime 066: Every time I breathe there's a new Claude update - 9to5Mac iOS 27 release date: Here’s when the next major iPhone update is coming Deals: 16GB M5 MacBook Air $150 off, Apple Watch Ultra 3 $99 off, 24GB M5 MacBook Pro, Magic Mouse, more watchOS 26.4 fixes a major Apple Watch Workout app complaint Mint Mobile launches $45/month bundle for wireless and home internet 9to5Mac Daily: April 7, 2026 – Apple’s MacBook Neo quandary - 9to5Mac Apple study details an AI-powered tool that helps developers build interface prototypes Aqara releases new Thermostat Hub W200 with Apple Adaptive Temperature support M5 MacBook Air is no longer Apple’s entry point so who is it for now? [Video] iOS 26 added my favorite new iPhone ringtone, listen here Studio Display XDR medical imaging feature gets FDA clearance [U: Now available] The best CarPlay tips and tricks Anthropic unveils powerful Mythos AI model, working with Apple in cybersecurity initiative iPhone Fold is ‘on track’ to launch this September, per Mark Gurman Google Chrome rolling out vertical tabs and fullscreen reading mode MacBook Neo facing 3-week delays at Apple, here’s how to buy one sooner Dark Matter season 2 gets release date on Apple TV Apple faces supply chain problem as MacBook Neo demand exceeds expectations ‘iPhone Ultra’ is the likely name of Apple’s foldable, says leaker Spotify Prompted Playlists now work for podcasts as well as music
Apple pulls fake Ledger app and Freecash in rough day for App Store review [Update]
Marcus Mendes · 2026-04-15 · via 9to5Mac
app store

Update, April 15, 2.06 p.m. ET: Apple reached out to 9to5Mac with more information, which you can find below the original post.

Just as CoinDesk reported that a fake Ledger app had drained millions from App Store users, TechCrunch revealed that another app had been harvesting sensitive user data. Apple pulled both today. Here are the details.

Fake scan app stole funds from at least 50 users

According to CoinDesk, at least 50 people had their Bitcoin, Ethereum, Solana, Tron, and XRP funds stolen between April 7 and April 13, after a malicious app called Ledger Live slipped through review and landed on the App Store.

Three of the largest victims lost seven-figure sums, with $3.23 million in USDT being stolen on April 9, $2.08 million of USDC on April 11 and $1.95 million in BTC, ETH and stETH being drained on April 8.

The report says that the funds were traced to KuCoin deposit addresses associated with Audi A6, “a centralized crypto mixing service known for charging high fees to obfuscate illicit flows.”

CoinDesk says Apple removed the app from the App Store, but didn’t respond to requests for comment. Neither did KuCoin, which has faced legal troubles associated with money laundering violations.

It is not immediately clear how Ledger Lite got past app review, nor why Apple didn’t take action when the first reports of stolen funds began appearing after April 7.

CoinDesk’s report notes that “the incident may form the basis for a class-action lawsuit,” according to Blockchain investigator ZachXBT.

A rough day for App Store review

The Ledger Live case wasn’t the only one to raise App Store concerns today.

According to TechCrunch, Apple pulled a data harvesting app called Freecash from the App Store, after the app “appears to have tricked users as it quickly rose to the top charts” over the past few months.

The report notes that Freecash became popular on TikTok by promising users they could “make money just by scrolling TikTok,” when in reality, users were effectively trading sensitive personal data for rewards:

A Malwarebytes report notes that the app may collect information about users’ race, religion, sex life, sexual orientation, health, and other biometrics, adding that the app is essentially a data broker looking to match game developers with users who are willing to install and spend money on mobile games. Games promoted on Freecash include Monopoly Go and Disney Solitaire, among others.

The Malwarebytes report came just days after Wired also looked into the app, raising concerns about its misleading marketing and the scope of the user data it may have been collecting.

TechCrunch’s own investigation, based on data from Appfigures and AppMagic, found that an earlier version of Freecash, published by Almedia GmbH, was removed from the App Store in mid 2024.

Months later, an existing app called Rewards, published by Cyprus-based 256 Rewards Ltd, was rebranded as Freecash and climbed into the top charts, raising questions about whether Almedia used another developer account to return to the App Store.

Here’s TechCrunch:

Almedia’s re-entry into the App Store through another developer account may have been a way of circumventing a ban on the initial Freecash app. Using another developer to re-enter the App Store after a ban is a common, though rule-breaking, tactic. (Almedia’s spokesperson declined to comment about its earlier app takedown.)

A Washington Post report about the scam app ecosystem noted this trend, highlighting several fraudulent apps that would disappear from the App Store and then reappear under a different developer account. Other independent investigations have documented this tactic as well, and often, scam apps’ owners operate a portfolio of accounts, it’s been reported.

TechCrunch says that Freecash was removed from the App Store after the site reached out to Apple for comment, as it worked on the story:

After TechCrunch reached out to Apple for comment, the company removed Freecash from the App Store for violations of its rules on Monday, citing the misleading marketing. Apple pointed TechCrunch to two App Store Review Guidelines, 3.1.2(a) and 2.3.1, which forbid scamming users, engaging in bait-and-switch tactics, and marketing apps in a misleading way.

Almedia, meanwhile, “denied allegations of driving artificial traffic to its platform or using deceptive marketing techniques,” and added that its apps “are fully compliant with the Apple App Store and Google Play Store policies, as demonstrated by the fact that they are live and regularly pass platform reviews.”


Update, April 15, 2.06 p.m. ET: In a statement to 9to5Mac, Apple said it has zero tolerance for fraudulent or malicious apps, pointing to its App Review Guidelines, which prohibit apps that try to scam users, include hidden or undocumented features, or rely on bait-and-switch tactics.

The company confirmed that, in addition to removing the Ledger Live app from the App Store, the developer account associated with it was terminated. Apple also said users can report scams, fraud, and other abusive or illegal content through https://reportaproblem.apple.com/, stressing that it takes such reports seriously and will take immediate action against apps that violate its guidelines.

As for Freecash, Apple also removed the app from the App Store and terminated the developer’s account over violations of App Review Guidelines sections 3.1.2(a) Permissible uses, and 3.2.2 Unacceptable, which cover misleading business practices, deceptive app behavior, and attempts to scam users.

Finally, Apple pointed to a study published in May 2025, which found that in the previous year, it removed or rejected more than 17,000 apps for bait-and-switch violations, rejected over 320,000 submissions for being spam, misleading, or copying other apps, and blocked more than 37,000 potentially fraudulent apps from reaching users.

Worth checking out on Amazon

Add 9to5Mac as a preferred source on Google Add 9to5Mac as a preferred source on Google

FTC: We use income earning auto affiliate links. More.