Current:Home > reviewsSurpassing:New cyberattack targets iPhone Apple IDs. Here's how to protect your data. -TrueNorth Capital Hub
Surpassing:New cyberattack targets iPhone Apple IDs. Here's how to protect your data.
FinLogic FinLogic Quantitative Think Tank Center View
Date:2025-04-10 02:59:24
A new cyberattack is targeting iPhone users, with criminals attempting to obtain individuals' Apple IDs in a "phishing" campaign, security software company Symantec said in an alert Monday.
Cyber criminals are sending text messages to iPhone users in the U.S. that appear to be from Apple, but are in fact an attempt at stealing victims' personal credentials.
"Phishing actors continue to target Apple IDs due to their widespread use, which offers access to a vast pool of potential victims," Symantec said. "These credentials are highly valued, providing control over devices, access to personal and financial information, and potential revenue through unauthorized purchases."
Consumers are also more likely to trust communications that appear to come from a trusted brand like Apple, warned Symantec, which is owned by Broadcom, a maker of semiconductors and infrastructure software.
The malicious SMS messages appear to come from Apple and encourage recipients to click a link and sign in to their iCloud accounts. For example, a phishing text could say: "Apple important request iCloud: Visit signin[.]authen-connexion[.]info/icloud to continue using your services." Recipients are also asked to complete a CAPTCHA challenge in order to appear legitimate, before they're directed to a fake iCloud login page.
Such cyberattacks are commonly referred to as "smishing" schemes in which criminals use fake text messages from purportedly reputable organizations, rather than email, to lure people into sharing personal information, such as account passwords and credit card data.
How to protect yourself
Be cautious about opening any text messages that appear to be sent from Apple. Always check the source of the message — if it's from a random phone number, the iPhone maker is almost certainly not the sender. iPhone users should also avoid clicking on links inviting people to access their iCloud account; instead, go to login pages directly.
"If you're suspicious about an unexpected message, call, or request for personal information, such as your email address, phone number, password, security code, or money, it's safer to presume that it's a scam — contact that company directly if you need to," Apple said in a post on avoiding scams.
Apple urges users to always enable two-factor authentication for Apple ID for extra security and to make it harder to access to your account from another device. It is "designed to make sure that you're the only person who can access your account," Apple said.
Apple adds that its own support representatives will never send its users a link to a website and ask them to sign in, or to provide your password, device passcode, or two-factor authentication code.
"If someone claiming to be from Apple asks you for any of the above, they are a scammer engaging in a social engineering attack. Hang up the call or otherwise terminate contact with them," the company said.
The Federal Trade Commission also recommends setting up your computer and mobile phone so that security software is updated automatically.
- In:
- Apple
- iPhone
Megan Cerullo is a New York-based reporter for CBS MoneyWatch covering small business, workplace, health care, consumer spending and personal finance topics. She regularly appears on CBS News 24/7 to discuss her reporting.
veryGood! (49)
Related
- FACT FOCUS: Inspector general’s Jan. 6 report misrepresented as proof of FBI setup
- Unraveling long COVID: Here's what scientists who study the illness want to find out
- A concerned citizen reported a mass killing at a British seaside café. Police found a yoga class.
- Crashing the party: Daniil Medvedev upsets Carlos Alcaraz to reach US Open final
- Senate begins final push to expand Social Security benefits for millions of people
- Vegas hotel operations manager accused of stealing $773K through bogus refund accounts
- Police fatally shoot man who was holding handgun in Idaho field
- Affirmative action wars hit the workplace: Conservatives target 'woke' DEI programs
- $73.5M beach replenishment project starts in January at Jersey Shore
- Legal fight expected after New Mexico governor suspends the right to carry guns in public
Ranking
- Trump wants to turn the clock on daylight saving time
- A man convicted of murder in Massachusetts in 1993 is getting a new trial due to DNA evidence
- G20 leaders pay their respects at a Gandhi memorial on the final day of the summit in India
- Clashes resume in largest Palestinian refugee camp in Lebanon, killing 3 and wounding 10
- Will the 'Yellowstone' finale be the last episode? What we know about Season 6, spinoffs
- Some millennials ditch dating app culture in favor of returning to 'IRL' connections
- Dolphins QB Tua Tagovailoa not worried about CTE, concussions in return
- Phoenix is on the cusp of a new heat record after a 53rd day reaching at least 110 degrees this year
Recommendation
In ‘Nickel Boys,’ striving for a new way to see
Evacuation now underway for American trapped 3,400 feet underground in cave
California lawmakers vote to limit when local election officials can count ballots by hand
The African Union is joining the G20, a powerful acknowledgement of a continent of 1 billion people
Rylee Arnold Shares a Long
Special election in western Pennsylvania to determine if Democrats or GOP take control of the House
Without Messi, Inter Miami takes on Sporting Kansas City in crucial MLS game: How to watch
How to make yourself cry: An acting coach's secrets for on command emotion