Current:Home > ScamsNew cyberattack targets iPhone Apple IDs. Here's how to protect your data. -Prime Money Path
New cyberattack targets iPhone Apple IDs. Here's how to protect your data.
View
Date:2025-04-26 00:19:39
A new cyberattack is targeting iPhone users, with criminals attempting to obtain individuals' Apple IDs in a "phishing" campaign, security software company Symantec said in an alert Monday.
Cyber criminals are sending text messages to iPhone users in the U.S. that appear to be from Apple, but are in fact an attempt at stealing victims' personal credentials.
"Phishing actors continue to target Apple IDs due to their widespread use, which offers access to a vast pool of potential victims," Symantec said. "These credentials are highly valued, providing control over devices, access to personal and financial information, and potential revenue through unauthorized purchases."
Consumers are also more likely to trust communications that appear to come from a trusted brand like Apple, warned Symantec, which is owned by Broadcom, a maker of semiconductors and infrastructure software.
The malicious SMS messages appear to come from Apple and encourage recipients to click a link and sign in to their iCloud accounts. For example, a phishing text could say: "Apple important request iCloud: Visit signin[.]authen-connexion[.]info/icloud to continue using your services." Recipients are also asked to complete a CAPTCHA challenge in order to appear legitimate, before they're directed to a fake iCloud login page.
Such cyberattacks are commonly referred to as "smishing" schemes in which criminals use fake text messages from purportedly reputable organizations, rather than email, to lure people into sharing personal information, such as account passwords and credit card data.
How to protect yourself
Be cautious about opening any text messages that appear to be sent from Apple. Always check the source of the message — if it's from a random phone number, the iPhone maker is almost certainly not the sender. iPhone users should also avoid clicking on links inviting people to access their iCloud account; instead, go to login pages directly.
"If you're suspicious about an unexpected message, call, or request for personal information, such as your email address, phone number, password, security code, or money, it's safer to presume that it's a scam — contact that company directly if you need to," Apple said in a post on avoiding scams.
Apple urges users to always enable two-factor authentication for Apple ID for extra security and to make it harder to access to your account from another device. It is "designed to make sure that you're the only person who can access your account," Apple said.
Apple adds that its own support representatives will never send its users a link to a website and ask them to sign in, or to provide your password, device passcode, or two-factor authentication code.
"If someone claiming to be from Apple asks you for any of the above, they are a scammer engaging in a social engineering attack. Hang up the call or otherwise terminate contact with them," the company said.
The Federal Trade Commission also recommends setting up your computer and mobile phone so that security software is updated automatically.
- In:
- Apple
- iPhone
Megan Cerullo is a New York-based reporter for CBS MoneyWatch covering small business, workplace, health care, consumer spending and personal finance topics. She regularly appears on CBS News 24/7 to discuss her reporting.
veryGood! (22938)
Related
- Jamie Foxx gets stitches after a glass is thrown at him during dinner in Beverly Hills
- The latest shake-up in Ohio’s topsy-turvy congressional primary eases minds within the GOP
- ATF director Steven Dettelbach says we have to work within that system since there is no federal gun registry
- Tennessee deploys National Guard to Texas as political fight over border increases
- Most popular books of the week: See what topped USA TODAY's bestselling books list
- Pennsylvania court rules electronic voting data is not subject to release under public records law
- Catholic news site Church Militant agrees to pay $500k in defamation case and is expected to close
- 'Expanding my pod': Lala Kent expecting her second baby, 'Vanderpump Rules' star announces
- The White House is cracking down on overdraft fees
- Warren, Ohio mail carrier shot, killed while in USPS van in 'targeted attack,' police say
Ranking
- Megan Fox's ex Brian Austin Green tells Machine Gun Kelly to 'grow up'
- Israel faces mounting condemnation over killing of Palestinians in Gaza City aid distribution melee
- Caitlin Clark passes Pistol Pete Maravich's record to become all-time NCAA Division I scoring leader
- How does 'the least affordable housing market in recent memory' look in your area? Check our map
- How to watch the 'Blue Bloods' Season 14 finale: Final episode premiere date, cast
- Man City’s 3-1 win against Man United provides reality check for Jim Ratcliffe
- One Tech Tip: Change these settings on X to limit calls and hide your IP address
- You Won't Believe What Sparked This Below Deck Guest's Drunken Meltdown
Recommendation
'Kraven the Hunter' spoilers! Let's dig into that twisty ending, supervillain reveal
2024 MLS All-Star Game set for July vs. Liga MX. Tickets on sale soon. Here's where to buy
How Taylor Swift Is Related to Fellow Tortured Poet Emily Dickinson
Supreme Court temporarily blocks Texas law that allows police to arrest migrants
Juan Soto praise of Mets' future a tough sight for Yankees, but World Series goal remains
Air Force employee charged with sharing classified info on Russia’s war with Ukraine on dating site
Rep. Mike Turner says aid to Ukraine is critical: We have to support them now or they will lose
Kate Middleton Spotted Out for First Time Since Abdominal Surgery