Apple is being sued by three individuals who declare about $1.8 million in Bitcoin was stolen after they downloaded and used the fraudulent Sparrow Pockets utility from the App Retailer.
The criticism, filed July 24 in California, alleges that Apple promotes the App Retailer as a supply of protected and trusted software program whereas failing to correctly vet and monitor functions distributed via the App Retailer.
Plaintiffs James Ramirez, Christopher Ellis, and Jalen Delgado say a malicious utility impersonated a reputable Sparrow Bitcoin pockets and instructed them to enter a seed phrase.
After coming into these secret restoration credentials, victims allegedly had their Bitcoins transferred to a cryptocurrency pockets managed by the scammers.
The official Sparrow Pockets is a desktop utility accessible for Home windows, macOS, and Linux; an iOS model will not be accessible.
Nevertheless, the developer of Sparrow Pockets stated that scammers have repeatedly revealed functions on Apple’s App Retailer that fake to be cryptocurrency wallets.
Sufferer misplaced Bitcoin after earlier warning
In accordance with the criticism, Delgado downloaded the fraudulent utility on or about Might 1, 2025, entered a seed phrase, and shortly thereafter found that 1.05033242 Bitcoins value roughly $120,000 had been transferred to the scammer.
Ramirez allegedly downloaded the app on July 25, 2025, and misplaced 7.4 Bitcoins value roughly $875,000. The criticism alleges that Ramirez reported the fraudulent app and the theft to Apple on the identical day, however that Apple by no means contacted Ramirez about that report or any subsequent reviews.
Simply over every week later, on or about August 3, Ellis additionally allegedly put in the Sparrow app from the App Retailer. After coming into the seed phrase, Ellis found that roughly $840,000 in cryptocurrency had been transferred to the scammer and instantly reported the app and the theft to Apple.
The criticism additionally alleges that Apple ranks and contains the fraudulent Sparrow app in a curated assortment of cryptocurrency apps, successfully recommending it alongside reputable functions.
Nevertheless, Apple is claimed to have been alerted to the Sparrow Pockets app fraud greater than a yr earlier than the plaintiffs’ losses occurred.
The criticism features a January 6, 2024 publish by Craig Uncooked, the developer of the reputable Sparrow Pockets utility, stating that regardless of reporting the fraudulent Sparrow Pockets app a number of weeks in the past, it’s nonetheless accessible on the App Retailer.
Uncooked additionally warned customers to solely receive Sparrow Pockets from the official web site and never belief an utility simply because it’s accessible from an app retailer.
MacRumors additionally shared Uncooked’s latest try to guard customers from faux Sparrow functions on the Apple App Retailer by submitting an unpublished placeholder app explaining that cellular apps that use the identify “Sparrow Pockets” are faux.
In accordance with Uncooked, Apple initially flagged the developer account for suspension as a result of suspected fraud, however later reversed the choice.
Apple informed BleepingComputer that it shortly eliminated functions impersonating Sparrow Pockets and terminated developer accounts related to them.
Apple additionally stated builders who imagine content material distributed via its companies infringes on their mental property can file a criticism with the corporate’s authorized division.
Prospects can individually report App Retailer fraud or suspected fraud via Apple’s subject reporting service, and Apple stated it would take speedy motion if an app is discovered to violate its tips.
The plaintiffs search redemption of stolen digital forex, compensatory and punitive damages, compensatory damages, lawyer’s charges, and different damages.
They’re additionally asking the court docket to require Apple to enhance and publicize its procedures for detecting and eradicating fraudulent functions, in addition to introduce warnings in regards to the dangers related to crypto apps.
Safety groups doc 54% of profitable assaults and subject a warning on solely 14%. The remainder strikes invisibly via the setting.
Picus’ whitepaper exhibits find out how to take a look at your SIEM and EDR guidelines in breach and assault simulations to make sure threats go undetected.
Get the white paper

