Apple Faces Lawsuit After Fake Sparrow Wallet iOS App Allegedly Siphons $1.8M in Bitcoin
Three Bitcoin holders sued Apple, alleging a counterfeit Sparrow Wallet in the App Store stole $1.8M and was featured in curated lists. The case tests platform liability for crypto scams.

Because Bitcoin
July 29, 2026
Apple’s carefully controlled App Store is built on trust. A new lawsuit argues that trust became a liability when a counterfeit “Sparrow Wallet” for iPhone allegedly appeared, ranked in search, and was showcased in curated crypto collections—leading to a combined $1.8 million in stolen Bitcoin. If a court agrees that curation reads like recommendation, the platform’s role around non-custodial wallet security could be redefined.
What the complaint says - Three Bitcoin holders filed an eight-count complaint on July 24 in the Northern District of California, bringing claims including fraud, negligent misrepresentation, and strict products liability. - Each plaintiff entered a seed phrase into the app. Reported losses: James Ramirez lost 7.4 BTC valued at $875,000; Christopher Ellis lost $840,000; and Jalen Delgado lost 1.05 BTC valued at $120,000. - Sparrow Wallet is desktop-only (Windows, macOS, Linux) and has never shipped an iOS app, so any App Store listing using its name is an impersonation. - Ramirez reported the fake app and his loss to Apple on July 25, 2025—the day it occurred—yet, according to the filing, fraudulent Sparrow-branded apps remained available when the suit was lodged. Ellis downloaded a Sparrow app from the store nine days after Ramirez’s report. - The complaint further alleges Apple’s ranking and inclusion of the impostor in curated crypto collections “effectively recommended” it alongside legitimate wallets.
The developer’s long-running warning Sparrow’s creator, Craig Raw, has been calling out iOS copycats since January 2024, noting that scam listings lingered despite reports and that iOS users might even need to install a suspect app just to flag it. He later attempted to publish a listing solely to tell iOS users Sparrow is desktop-only; Apple rejected it as placeholder content and initially marked his developer account for termination over “dishonest activity,” a decision that was reversed on appeal.
Apple declined to comment on the case, instead pointing to its ecosystem analysis stating it rejected more than 371,000 malicious App Store submissions. The company says there are currently no Sparrow Wallet copycats on the store.
The legal hinge: when curation becomes duty One count asks the court to treat the App Store itself as a product placed into the stream of commerce, opening the door to strict liability if a duty to warn exists. Apple’s position has often rested on user agreements and disclaimers; the complaint argues those warnings sit buried in click-through terms, out of line with how people interpret curated lists and rankings.
If a judge accepts that platform curation shapes consumer reliance in a meaningful way, discovery could probe how search ranking, trust badges, and editorial collections are constructed—and whether crypto-specific risks were reasonably addressed. That creates a precedent risk: treating an app marketplace less like a neutral conduit and more like a product with safety expectations.
Why this matters for Bitcoin users and platforms Non-custodial wallets put private-key control—and irreversible loss risk—on the user. Many users conflate App Store presence with authenticity, which scammers exploit by cloning names, icons, and metadata. The nine-day gap between an initial report and a subsequent loss (per the complaint) highlights how detection, review queues, and takedown workflows can lag attacker iteration.
Stronger controls are possible without overreach: - Verified provenance for wallet publishers, including trademark and domain-bound verification, reduces impersonation surface area. - Reproducible builds and cryptographic attestations could be required for wallets, raising the bar beyond cosmetic checks. - UX friction for “seed import” flows—explicit warnings when importing into a newly installed app, plus brand/domain confirmations—would deter snap decisions without crippling legitimate use. - Editorial curation should be risk-scored; featuring a crypto wallet ought to carry heightened diligence and auditable rationale.
For developers, clear “platform-statement” listings that educate users can be safer than silence; rejecting educational placeholders may create more confusion than it prevents. For users, basic opsec remains non-negotiable: discover wallet links from the official site, validate platform support, and never type a recovery phrase into a new install without independently verifying the app’s provenance.
The suit doesn’t just question whether a fake wallet slipped through. It challenges whether marketplace design—rankings, collections, and implied endorsements—creates a duty of care in self-custody contexts where a single seed phrase mistake can be terminal. That’s the part the industry should take seriously, regardless of how this case lands.