Current:Home > InvestNew cyberattack targets iPhone Apple IDs. Here's how to protect your data. -SecureWealth Bridge
New cyberattack targets iPhone Apple IDs. Here's how to protect your data.
View
Date:2025-04-12 05:56:05
A new cyberattack is targeting iPhone users, with criminals attempting to obtain individuals' Apple IDs in a "phishing" campaign, security software company Symantec said in an alert Monday.
Cyber criminals are sending text messages to iPhone users in the U.S. that appear to be from Apple, but are in fact an attempt at stealing victims' personal credentials.
"Phishing actors continue to target Apple IDs due to their widespread use, which offers access to a vast pool of potential victims," Symantec said. "These credentials are highly valued, providing control over devices, access to personal and financial information, and potential revenue through unauthorized purchases."
Consumers are also more likely to trust communications that appear to come from a trusted brand like Apple, warned Symantec, which is owned by Broadcom, a maker of semiconductors and infrastructure software.
The malicious SMS messages appear to come from Apple and encourage recipients to click a link and sign in to their iCloud accounts. For example, a phishing text could say: "Apple important request iCloud: Visit signin[.]authen-connexion[.]info/icloud to continue using your services." Recipients are also asked to complete a CAPTCHA challenge in order to appear legitimate, before they're directed to a fake iCloud login page.
Such cyberattacks are commonly referred to as "smishing" schemes in which criminals use fake text messages from purportedly reputable organizations, rather than email, to lure people into sharing personal information, such as account passwords and credit card data.
How to protect yourself
Be cautious about opening any text messages that appear to be sent from Apple. Always check the source of the message — if it's from a random phone number, the iPhone maker is almost certainly not the sender. iPhone users should also avoid clicking on links inviting people to access their iCloud account; instead, go to login pages directly.
"If you're suspicious about an unexpected message, call, or request for personal information, such as your email address, phone number, password, security code, or money, it's safer to presume that it's a scam — contact that company directly if you need to," Apple said in a post on avoiding scams.
Apple urges users to always enable two-factor authentication for Apple ID for extra security and to make it harder to access to your account from another device. It is "designed to make sure that you're the only person who can access your account," Apple said.
Apple adds that its own support representatives will never send its users a link to a website and ask them to sign in, or to provide your password, device passcode, or two-factor authentication code.
"If someone claiming to be from Apple asks you for any of the above, they are a scammer engaging in a social engineering attack. Hang up the call or otherwise terminate contact with them," the company said.
The Federal Trade Commission also recommends setting up your computer and mobile phone so that security software is updated automatically.
- In:
- Apple
- iPhone
Megan Cerullo is a New York-based reporter for CBS MoneyWatch covering small business, workplace, health care, consumer spending and personal finance topics. She regularly appears on CBS News 24/7 to discuss her reporting.
veryGood! (547)
Related
- Rolling Loud 2024: Lineup, how to stream the world's largest hip hop music festival
- Top election official in Nevada county that is key to the presidential race takes stress leave
- Jury awards $300 million to women who alleged sex abuse by doctor at a Virginia children’s hospital
- Selling Sunset's Bre Tiesi Reveals Where She and Chelsea Lazkani Stand After Feud
- Retirement planning: 3 crucial moves everyone should make before 2025
- Shohei Ohtani 50-50 home run ball: Auction starts with lawsuit looming
- Michael Andretti hands over control of race team to business partner. Formula 1 plans in limbo
- Kentucky sign language interpreter honored in program to give special weather radios to the deaf
- Rylee Arnold Shares a Long
- Suspect killed and 2 Georgia officers wounded in shooting during suspected gun store burglary
Ranking
- Apple iOS 18.2: What to know about top features, including Genmoji, AI updates
- Jimmy Carter at 100: A century of changes for a president, the US and the world since 1924
- Indicted New York City mayor adopts familiar defense: He was targeted for his politics
- Large police presence at funeral for Massachusetts recruit who died during training exercise
- Federal court filings allege official committed perjury in lawsuit tied to Louisiana grain terminal
- Salvador Perez's inspiring Royals career gets MLB postseason return: 'Kids want to be like him'
- Friend says an ex-officer on trial in fatal beating of Tyre Nichols did his job ‘by the book’
- Fossil Fuel Presence at Climate Week NYC Spotlights Dissonance in Clean Energy Transition
Recommendation
Moving abroad can be expensive: These 5 countries will 'pay' you to move there
Michael Andretti hands over control of race team to business partner. Formula 1 plans in limbo
How Tigers turned around season to secure first postseason berth since 2014
'Mighty strange': Tiny stretch of Florida coast hit with 3 hurricanes in 13 months
What were Tom Selleck's juicy final 'Blue Bloods' words in Reagan family
Lululemon's Latest We Made Too Much Drops -- $29 Belt Bags, $49 Align Leggings & More Under $99 Finds
Nicole Evers-Everette, granddaughter of civil rights leaders, found after being reported missing
People are supporting 'book sanctuaries' despite politics: 'No one wants to be censored'