New Phishing Attack Disables iPhone Security: How to Protect Yourself?

A dangerous smishing campaign is targeting Apple iMessage users, using social engineering to bypass the messaging service's built-in anti-phishing protections. The attack could expose millions of users, but you can stay safe by changing one security feature.

How this smishing attack disables iMessage security

Apple's built-in security protections block links sent via iMessage if the message comes from an unknown sender. This is to protect users from being exposed to malicious links. Cybercriminals have found a way to bypass this feature by tricking you into disabling this anti-phishing protection.

Attackers are sending fake alerts asking iMessage users to respond. These alerts take the form of fake shipping alerts or fake unpaid phone bills messages. The messages ask users to reply with “Y” (yes) or “N” (no) to accept or decline the delivery. Replying tells iMessage that you know the number, which enables the links.

Bleeping Computer reports that the message also includes instructions to “Exit the text message, re-open the text message activation link, or copy the link into Safari” to get the latest shipping status or pay tolls. The link takes users to a phishing site where their personal and financial information is stolen and then used for identity theft, credit card fraud, and other attacks.

New Phishing Attack Disables iPhone Security: How to Protect Yourself?

Since people are used to replying STOP, YES, or NO to confirm or cancel valid appointments or alerts via text messages, attackers exploit this to trick users into thinking that replying is harmless. Even if you don’t click on the link, replying tells the attacker that you are replying to a smishing message, making you a target for future attacks.

How to protect yourself

Don’t respond to text messages from numbers you don’t recognize, as this will disable Apple’s built-in security protections, especially if you receive a text about an unexpected package or a fine you don’t know about. Always treat links sent from unknown sources as malicious and don’t click them. There are other ways to spot smishing messages, too.

If you’re not sure if you have a package or fines and fees due but still want to check, close iMessage and open the company’s official website in your browser. Contact their customer service to verify the information. You can also log into your account through their website or app. Don’t access the website using a link from a message.

Be wary of messages that pressure you to act “now,” offer a “limited time offer,” or threaten you with negative consequences if you don’t respond immediately. Most phishing scams are designed to make you act before you think. This causes you to give them your information before you realize you’ve been scammed.

What to do if I have already sent a feedback?

If you responded or followed the attacker's instructions before realizing it was a scam, there are still ways to mitigate this.

First, block the phone number immediately to prevent them from sending you any more messages. Then, change your account password and enable multi-factor authentication (MFA).

If you have provided your financial information, call your bank immediately. The bank may freeze your account, cancel your credit card, and issue a new one.

If you have provided your personally identifiable information (PII) to a hacker that could be used for identity theft, you can contact TransUnion, Equifax, and Experian to freeze your credit. Doing so will prevent scammers from using your information to get loans or apply for new credit cards in your name.

Monitor your credit card and bank statements for suspicious transactions. You can also use identity theft protection services, including credit and PII monitoring. Advanced services include social media monitoring to find profiles created in your name and other services such as stolen data recovery assistance or ID recovery processes.

Also, be sure to download the latest software updates or patches for your device as soon as they become available, as they can help patch security holes and prevent future attacks.

Sign up and earn $1000 a day ⋙

Leave a Comment

How to quickly open the camera on Android phones

How to quickly open the camera on Android phones

Photography is a great way to capture memorable moments in our lives.

How to fix keyboard lag on iPhone

How to fix keyboard lag on iPhone

Some devices after upgrading to iOS 18 experience keyboard lag, which affects content input on iPhone.

Android 12: Beta 5 Released with a Series of New Features

Android 12: Beta 5 Released with a Series of New Features

Android 12 brings the biggest design change in the history of Android. Google rethought the entire experience, from colors to shapes, lighting, and motion. The result is an Android 12 that's more intuitive, dynamic, and personalized than ever.

Is there a drop in iPhone 16e GPU performance?

Is there a drop in iPhone 16e GPU performance?

The iPhone 16e is the latest iPhone model just announced by Apple, and has immediately attracted a lot of attention from users when it is priced at a quite affordable level, only 599 USD.

How to open Siri shortcut on iPhone lock screen

How to open Siri shortcut on iPhone lock screen

There are Siri shortcuts that users want to use right from the lock screen, instead of having to access them directly from the manual way. Here are instructions for adding Siri shortcuts on the iPhone lock screen.

How to Share Focus Status on iPhone

How to Share Focus Status on iPhone

Focused State on iPhone will share the focused state you have enabled on your device to authorized apps.

How to fix microphone not working error on Android phone

How to fix microphone not working error on Android phone

Although microphone related issues are quite common on Android devices, you can follow the following troubleshooting steps to resolve them.

Instructions for writing notes on the iPhone home screen

Instructions for writing notes on the iPhone home screen

To keep track of notes right on the iPhone home screen, users can use the Sticky Widgets application.

11 Best Compass Apps for Phones

11 Best Compass Apps for Phones

Instead of buying a traditional compass and having to remember to carry it with you every time you want to use it, you can download a compass app to your phone.

8 Android Features You Wish You Knew Sooner

8 Android Features You Wish You Knew Sooner

Even after a decade of using Android, there are still hidden features that make you wonder: Why didn't I know about this sooner? .

How to View Live Activity from iPhone Lock Screen

How to View Live Activity from iPhone Lock Screen

Live Activity on iPhone lets you keep track of ongoing activities or upcoming events right from your iPhone lock screen.

Google Removes Gemini Access From Google App for iPhone

Google Removes Gemini Access From Google App for iPhone

The Google app for iPhone is about to become a little less useful as Google recently removed access to Gemini AI from that app.

How to change default browser and email on iPhone

How to change default browser and email on iPhone

To set your preferred web browser as your default on iOS 14, follow these steps. Go to Settings > scroll down and click on any browser you have installed on your iPhone, for example here I choose Chrome.

7 iPhone Camera Settings to Adjust for Better Video

7 iPhone Camera Settings to Adjust for Better Video

While your iPhone can shoot great videos right out of the box, you can get better results by tweaking some camera settings.

4 Best Android Cleaner Apps

4 Best Android Cleaner Apps

Quantrimang has filtered out a list of the best junk cleaning apps on Android, please refer to it below.