Current:Home > MarketsNovaQuant-New cyberattack targets iPhone Apple IDs. Here's how to protect your data. -Quantum Capital Pro
NovaQuant-New cyberattack targets iPhone Apple IDs. Here's how to protect your data.
TrendPulse Quantitative Think Tank Center View
Date:2025-04-09 14:25:12
A new cyberattack is targeting iPhone users, with criminals attempting to obtain individuals' Apple IDs in a "phishing" campaign, security software company Symantec said in an alert Monday.
Cyber criminals are sending text messages to iPhone users in the U.S. that appear to be from Apple, but are in fact an attempt at stealing victims' personal credentials.
"Phishing actors continue to target Apple IDs due to their widespread use, which offers access to a vast pool of potential victims," Symantec said. "These credentials are highly valued, providing control over devices, access to personal and financial information, and potential revenue through unauthorized purchases."
Consumers are also more likely to trust communications that appear to come from a trusted brand like Apple, warned Symantec, which is owned by Broadcom, a maker of semiconductors and infrastructure software.
The malicious SMS messages appear to come from Apple and encourage recipients to click a link and sign in to their iCloud accounts. For example, a phishing text could say: "Apple important request iCloud: Visit signin[.]authen-connexion[.]info/icloud to continue using your services." Recipients are also asked to complete a CAPTCHA challenge in order to appear legitimate, before they're directed to a fake iCloud login page.
Such cyberattacks are commonly referred to as "smishing" schemes in which criminals use fake text messages from purportedly reputable organizations, rather than email, to lure people into sharing personal information, such as account passwords and credit card data.
How to protect yourself
Be cautious about opening any text messages that appear to be sent from Apple. Always check the source of the message — if it's from a random phone number, the iPhone maker is almost certainly not the sender. iPhone users should also avoid clicking on links inviting people to access their iCloud account; instead, go to login pages directly.
"If you're suspicious about an unexpected message, call, or request for personal information, such as your email address, phone number, password, security code, or money, it's safer to presume that it's a scam — contact that company directly if you need to," Apple said in a post on avoiding scams.
Apple urges users to always enable two-factor authentication for Apple ID for extra security and to make it harder to access to your account from another device. It is "designed to make sure that you're the only person who can access your account," Apple said.
Apple adds that its own support representatives will never send its users a link to a website and ask them to sign in, or to provide your password, device passcode, or two-factor authentication code.
"If someone claiming to be from Apple asks you for any of the above, they are a scammer engaging in a social engineering attack. Hang up the call or otherwise terminate contact with them," the company said.
The Federal Trade Commission also recommends setting up your computer and mobile phone so that security software is updated automatically.
- In:
- Apple
- iPhone
Megan Cerullo is a New York-based reporter for CBS MoneyWatch covering small business, workplace, health care, consumer spending and personal finance topics. She regularly appears on CBS News 24/7 to discuss her reporting.
veryGood! (3)
Related
- Friday the 13th luck? 13 past Mega Millions jackpot wins in December. See top 10 lottery prizes
- Pro athletes understand gambling on their games is a non-negotiable no-no. Some learned the hard way
- More young people could be tried as adults in North Carolina under bill heading to governor
- Sen. Bob Menendez’s wife is excused from court after cancer surgery
- NFL Week 15 picks straight up and against spread: Bills, Lions put No. 1 seed hopes on line
- Lululemon Drops a Clear Version of Its Iconic Belt Bag Just in Time for Summer Concerts
- Jessie J Discusses Finding Her New Self One Year After Welcoming Son
- Alaska father dies during motorcycle ride to honor daughter killed in bizarre murder-for-hire scheme
- As Trump Enters Office, a Ripe Oil and Gas Target Appears: An Alabama National Forest
- Michigan man’s court video about driving offense went viral. Now he’s in trouble again.
Ranking
- The 401(k) millionaires club keeps growing. We'll tell you how to join.
- New York governor delays plan to fund transit and fight traffic with big tolls on Manhattan drivers
- Louisiana lawmakers approve bill to allow surgical castration of child sex offenders
- Jennifer Lopez Shares Message on Negativity After Canceling Tour
- Taylor Swift makes surprise visit to Kansas City children’s hospital
- Walmart offers bonuses to hourly workers in a company first
- Deliberations continue in $40 million fraud trial roiled by bag of cash for a juror
- Clubhouse programs take pressure off overwhelmed Texas mental health hospitals
Recommendation
Justice Department, Louisville reach deal after probe prompted by Breonna Taylor killing
Ikea is hiring real people to work at its virtual Roblox store
Most Americans still not sold on EVs despite push from Biden, poll finds
Pritzker signs $53.1B Illinois budget, defends spending with ‘sustainable long-term growth’
Taylor Swift Eras Archive site launches on singer's 35th birthday. What is it?
US vs. Pakistan: Start time, squads, where to watch 2024 T20 Cricket World Cup match
In Push to Meet Maryland’s Ambitious Climate Commitments, Moore Announces New Executive Actions
2 women suspected in a 2022 double-homicide case in Colorado arrested in Arizona by a SWAT team