Some Apple users are Crime Movies | Page 2 of 2 | Adult Movies Onlinereportedly being targeted by a sophisticated attack, requesting them to hand over their Apple ID credentials over and over again.
According to KrebsonSecurity, the attack starts with unsuspecting Apple device owners getting dozens of system-level messages, prompting them to reset their Apple ID password. If that fails, a person pretending to be an Apple employee will call the victim and try to convince them into handing over their password.
SEE ALSO: Apple confirms dates for WWDC 2024This is exactly what happened to entrepreneur Parth Patel, who described their experience on Twitter/X. First, all of Patel's Apple devices, including their iPhone, Watch, and MacBook, started displaying the "Reset Password" notifications. After Patel clicked "Don't Allow" to more than one hundred requests, the fake Apple Support called, spoofing the caller ID of Apple's official Apple Support line. The fraudster Apple employee actually knew a lot of Patel's real data, including email, address, and phone number, but they got their name wrong, which had confirmed Patel's suspicions that they were under attack.
This Tweet is currently unavailable. It might be loading or has been removed.
While the attack was ultimately unsuccessful in this example, it's easy to imagine it working. The victim might accidentally allow the password reset (mistakes are easy to happen when you have to click on something hundreds of times), or they could fall for the fairly convincing, fake Apple Support call.
Patel's example isn't isolated, either; KrebsonSecurity has details on a very similar attack that happened to a crypto hedge fund owner identified by his first name, Chris, as well as a security researcher identified as Ken. In Chris' example, the attack persisted for several days, and also ended with a fake Apple Support call.
How did the attackers know all the data needed to perform the attack, and how did they manage to send system-level alerts to the victims' phones? According to KrebsonSecurity, the hackers likely had to get a hold of the victim's email address and phone number, associated with their Apple ID. Then they used an Apple ID password reset form, that requires an email or phone number, alongside a CAPTCHA, to send the system-level, password reset prompts. They also likely used a website called PeopleDataLabs to get information on both the victim and Apple employees they impersonated.
But there could also be a bug in Apple's systems, which should in theory be designed not to allow someone to abuse the password reset form and send dozens of requests in a short period of time (Apple did not respond to KrebsonSecurity's request for comment).
It appears that there's no easy or foolproof way to protect oneself from such an attack at this time, save from changing one's Apple ID credentials and tying them to a new number and email. It's hard to tell how widespread this attack is, but Apple users should be vigilant and triple-check the authenticity of any password reset request, even if it appears to come from Apple itself.
For on spammers and scammers, check out Mashable's series Scammed, where we help you navigate a connected world that’s out for your money, your information, or just your attention.
Topics Apple Cybersecurity
Xiaomi launches its Magic Mouse 2The technology that may finally make ‘clean’ cookstoves a realityWhat to do when you see harassment at the polls on Election Day'Overwatch' developers discuss new maps and Arcade mode'CU in the NT' is quite possibly the wildest tourism slogan everIf the election happened in a galaxy far, far awayMeet the 12How to unblock Pornhub for free in MississippiFriendless man bravely takes on mannequin challenge by himself'You have a knife? I have two': Store owner scares away thief like a bossSamsung says 85 percent of U.S. Note7 devices have been replacedDude who took selfies in the middle of a forest fire gets scolded AFBogus apps are targeting holiday shoppers on the iOS App StoreRussian fishing boat finds an enormous surprise in their fishing netVirtual reality should stop trying to imitate traditional gamingGmail uses your inbox to remind you to vote9 suggestions for Oscar host (and the top 3 are women)Dude who took selfies in the middle of a forest fire gets scolded AFThere is a 100% chance that Nate Silver is f**king furiousTake your lobes to the Jurassic era with these plastic dinosaur earrings Nimble manicure robot preorder: Save $100 Every Day Was Saturday in Harlem by The Paris Review Kentucky vs. TAMU basketball livestreams: Game time, streaming deals, and more Announcing the Next Editor of ‘The Paris Review’ Staff Picks: Boulders, Brushstrokes, and Bud Smith by The Paris Review Pink Moon by Nina MacLaughlin How to watch Purdue vs. PSU basketball without cable: game time, streaming deals, and more On Memory and Motorcycles: An Interview with Rachel Kushner by Cornelia Channing Whiting Awards 2021: Marwa Helal, Poetry Sheri Benning’s “Winter Sleep” by The Paris Review At Home among the Birds: An Interview with Jonathan Meiburg by John Jeremiah Sullivan Memoir of a Born Polemicist by Vivian Gornick The Trouble with Charlotte Perkins Gilman by Halle Butler Staff Picks: Comma Splices, Nice Zones, and Ladies Alone by The Paris Review Best mesh router deal: Get the Google Nest WiFi Pro for $119.99 A Kind of Packaged Aging Process by Jan Morris How to create your own stickers on WhatsApp How is 'Killers of the Flower Moon' different from the book? Whiting Awards 2021: Jordan E. Cooper, Drama How to buy the Apple Vision Pro: A checklist of what you'll need at check out
2.6199s , 8222.53125 kb
Copyright © 2025 Powered by 【Crime Movies | Page 2 of 2 | Adult Movies Online】,Steady Information Network