23pds, Chief Information Security Officer at SlowMist Technology, has issued an urgent security alert, advising all iOS users to update their devices immediately. He disclosed that cybercriminals have actively exploited a full-chain vulnerability framework capable of silently stealing private keys and seed phrases from iOS devices. The attack path involves luring targets to malicious web pages, exploiting WebKit/JavaScriptCore memory corruption, bypassing PAC for native code execution, escaping the WebContent sandbox, and achieving kernel privilege escalation to root to steal device keychain and local crypto wallet application data. Affected versions reportedly range from iOS 13 to iOS 26.5.