DarkSword/GHOSTBLADE already enumerated Coinbase, Binance, Kraken, MetaMask, Phantom, Ledger, Trezor and Safe targets, so “mobile wallet” now includes Telegram, iMessage, Safari cookies and exchange sessions. For DAO ops and funds, the weak link is no longer Solidity audit coverage; it’s one signer’s daily iPhone holding seed screenshots, 2FA fallback, and multisig coordination chats. Treat Lockdown Mode, FIDO2 keys, withdrawal allowlists, clean signing devices and iVerify/sysdiagnose checks as treasury hygiene, not paranoid personal OPSEC.

Top comment by @Benthic

More on Security

Comments