Highlights

  • Apple users have been reporting a surge in phishing attacks.
  • Attackers are using tactics like overwhelming users with MFA prompts, impersonation of Apple officials over phone calls.
  • Users are advised to stay vigilant.

Latest news

OnePlus 15R first look: OnePlus changes the R-series playbook

OnePlus 15R first look: OnePlus changes the R-series playbook

India's retail inflation rises to 0.71% in November

India's retail inflation rises to 0.71% in November

Cabinet approves CoalSETU window for auction of coal to boost industrial use and export

Cabinet approves CoalSETU window for auction of coal to boost industrial use and export

Cabinet approves Minimum Support Price for Copra for 2026 season

Cabinet approves Minimum Support Price for Copra for 2026 season

Fire never left: Vinesh Phogat comes out of retirement, targets LA Olympics

Fire never left: Vinesh Phogat comes out of retirement, targets LA Olympics

Flexible office segment in India set to grow faster, over 25% annually by 2027: Report

Flexible office segment in India set to grow faster, over 25% annually by 2027: Report

Rahul Gandhi flags issue of air pollution, seeks discussion in Lok Sabha

Rahul Gandhi flags issue of air pollution, seeks discussion in Lok Sabha

Japan lifts tsunami warning after magnitude 6.7 quake

Japan lifts tsunami warning after magnitude 6.7 quake

Apple users report a surge in phishing attacks via MFA prompts, Here's how you can protect your device

In light of the recent surge in phishing attacks on Apple devices, including iPhones and Macs, as reported by users, here's all you need to know about the different tactics scammers are using and how you can stay safe against them.

Apple users report a surge in phishing attacks via MFA prompts, Here's how you can protect your device

In a recent surge of cybercriminal activities, Apple users have become the prime targets of a phishing attack designed to compromise their accounts.

The attack exploits a potential loophole in the Apple ID password reset mechanism, effectively putting users' digital security at risk. This complex scheme involves sending excessive MFA (multi-factor authentication) prompts to users, aiming to trick them into inadvertently granting access to their accounts.

Apple ID Phishing Attack Tactics

The phishing attack works by overwhelming users' devices with system-level Apple ID notification spam, making it nearly impossible to use the devices. Multiple victims have reported receiving a barrage of prompts, compelling them to accept or deny a password reset request. This MFA bypass strategy leaves the users with no choice but to interact with the notifications to regain control of their devices. This is a tactic that is also known as notification spam.

According to reports, attackers have also been impersonating Apple support via phone calls. During these calls, they attempt to convince the victims that their accounts are compromised and require a verification process. The scammers then ask for the Apple one-time password sent to the user's device, aiming to finalize the account takeover.

Investigations have revealed that this scheme essentially abuses the forgotten Apple ID password exploit. Attackers are able to initiate the 'Apple ID password reset' vulnerability through Apple’s recovery page, regardless of whether the user has set up additional security measures like a recovery key.

User Experiences Highlight the Security Breach

Individual accounts from affected users shed light on the severity of the Apple ID security breach.

One user described how their ordeal involved denying over a hundred prompts, while another recounted a misleading call from someone claiming to be from Apple support.

This Apple phone scam not only demonstrates the attackers' determination but also their access to personal information, which they likely obtain from online databases.

Recommendations for Enhanced Security

In the wake of this sophisticated Apple ID account lockout scam, Apple customers are advised to remain vigilant. Accepting unsolicited password reset requests or disclosing one-time passwords over the phone can lead to severe security compromises. Users are encouraged to scrutinize any communication claiming to be from Apple, especially those demanding sensitive information.

This series of Apple ID phishing attack incidents calls attention to the importance of cybersecurity awareness. By staying informed and cautious, users can protect themselves from falling victim to such exploitative tactics.

Also watch: Call of Duty Warzone Mobile out now! Check how to download, system requirements, features and more here

ADVERTISEMENT

Up Next

Apple users report a surge in phishing attacks via MFA prompts, Here's how you can protect your device

Apple users report a surge in phishing attacks via MFA prompts, Here's how you can protect your device

OnePlus 15R first look: OnePlus changes the R-series playbook

OnePlus 15R first look: OnePlus changes the R-series playbook

OnePlus Pad Go 2 First Look: Larger display, more polish, but does it work?

OnePlus Pad Go 2 First Look: Larger display, more polish, but does it work?

Realme Watch 5 Review: A budget smartwatch that gets the basics right

Realme Watch 5 Review: A budget smartwatch that gets the basics right

Realme P4x Review: Budget performer with a beast of a battery

Realme P4x Review: Budget performer with a beast of a battery

Nothing Phone 3a Community Edition ASMR Unboxing & First Look: For the fans, by the fans

Nothing Phone 3a Community Edition ASMR Unboxing & First Look: For the fans, by the fans

ADVERTISEMENT

editorji-whatsApp

More videos

Comic Con Delhi 2025: Sony PlayStation Leads the Floor

Comic Con Delhi 2025: Sony PlayStation Leads the Floor

OnePlus marks 12 years in India with a new six-star lineup for the 15R reveal

OnePlus marks 12 years in India with a new six-star lineup for the 15R reveal

Vivo X300 Pro Review: Pro-grade cameras, fantastic performance, but is it truly unbeatable?

Vivo X300 Pro Review: Pro-grade cameras, fantastic performance, but is it truly unbeatable?

Realme Watch 5 First Look: Inside the factory where It’s Made in India

Realme Watch 5 First Look: Inside the factory where It’s Made in India

Vivo X300 Review: Compact flagship, powerful performance, but what about the cameras?

Vivo X300 Review: Compact flagship, powerful performance, but what about the cameras?

Nothing Phone 3a Lite Review: Easy to like, but is it good value for money?

Nothing Phone 3a Lite Review: Easy to like, but is it good value for money?

iQOO 15 Review: A premium leap that finally puts iQOO in the top tier

iQOO 15 Review: A premium leap that finally puts iQOO in the top tier

Realme GT 8 Pro Dream Edition: Premium or Just Racing Paint? Full Review  

Realme GT 8 Pro Dream Edition: Premium or Just Racing Paint? Full Review  

Blaupunkt 65-inch Google Mini QD TV Review: The Surprise Package of 2025?

Blaupunkt 65-inch Google Mini QD TV Review: The Surprise Package of 2025?

Oppo Find X9 Pro Review: Massive Battery, Pro Cameras, Big Price — Worth It?

Oppo Find X9 Pro Review: Massive Battery, Pro Cameras, Big Price — Worth It?

Editorji Technologies Pvt. Ltd. © 2022 All Rights Reserved.