Sunday, 26 January 2025
25.8 C
Singapore
19.6 C
Thailand
22.2 C
Indonesia
25.7 C
Philippines

Beware of MFA bombing: A new phishing scam targeting Apple users

"MFA Bombing" phishing attack targeting Apple users and how to protect yourself from being locked out of your account.

In a concerning trend, numerous Apple enthusiasts have become the unsuspecting victims of a phishing scheme known as “MFA Bombing.” This cunning attack exploits a loophole in Apple’s password reset system, preying on the shared human traits of impatience and oversight.

How does the scam unfold?

Imagine your day is interrupted by a barrage of “Reset Password” notifications on your iPhone, urging you to “Use this iPhone to reset your Apple ID password.” For those caught in the crosshairs of this scam, such alerts have become a frustrating reality. Parth Patel recounted his ordeal on X, detailing how he was bombarded with up to 100 of these notifications.

The attackers’ strategy hinges on weariness and error. They bombard you with notifications in the hope that, in a moment of frustration or distraction, you’ll mistakenly press “Allow” instead of “Don’t Allow.” Falling into this trap grants the scammer the power to reset your Apple ID password, effectively locking you out of your account and devices.

Should this initial ploy fail, the scammer might escalate their tactics by impersonating Apple Support in a phone call. The aim is to coax you into revealing a one-time password, which they can use to gain control over your Apple ID.

The email addresses and phone numbers linked to your Apple ID are all the scammers need to launch this attack. These details are used on Apple’s page for a forgotten Apple ID password, triggering the relentless notifications. The exact method by which these attackers manage to spam users with multiple alerts remains unclear, though it is suspected that a glitch in the system is being exploited.

Steps to take if you’re targeted

There is no definitive solution to this problem currently. If you receive persistent notifications, remain calm and methodically tap “Don’t Allow” on each one.

Moreover, should you receive an unsolicited call claiming to be from Apple Support, remember that Apple does not make outbound calls unless requested by the customer. Notably, Apple would never ask for your one-time password reset codes over the phone.

This ordeal underscores the importance of vigilance in the digital age. By staying informed and cautious, you can protect yourself from falling victim to such schemes.

Hot this week

Pre-registration for Assassin’s Creed Shadow is now open

Ubisoft has opened pre-registration for Assassin’s Creed Shadow, including for Mac, with special editions and exciting pre-order bonuses.

Nintendo leaves the original Donkey Kong Country Returns team out of remaster credits

Nintendo's Donkey Kong Country Returns HD remaster omits the original Retro Studios team from credits, sparking discussions about crediting in gaming.

Grab-BYD partnership signals Southeast Asia’s EV future

Grab partners with BYD to bring 50,000 EVs to Southeast Asia, aiming to lead the region's green transport shift despite infrastructure challenges.

Arlo unveils advanced fire detection technology with real-time alerts

Arlo unveils AI-powered fire detection, offering real-time alerts and early warning for home safety. Available with Arlo Secure 5 Plus in Singapore.

Epic Games expands mobile store with new developer support program

Epic Games is expanding its mobile store with new developer support, including fee coverage for iOS developers, amid ongoing legal battles.

Marvel Snap is set to return to app stores, confirms developer

Second Dinner, developer of Marvel Snap, says the company will begin its return to app stores after TikTok-linked outages, starting with Google Play.

Tumblr TV emerges as a TikTok alternative nearly a decade after its launch

Tumblr TV officially launches as a TikTok alternative nearly 10 years after its creation, attracting new users amidst TikTok's uncertain future.

Apple reshuffles AI leadership and plans major Siri upgrades

Apple reshuffled its AI team, appointing Kim Vorrath to boost Siri upgrades and AI innovation. This signalled a stronger focus on AI development.

X rolls out vertical video feed to global iOS users

X expands its vertical video feed globally for iOS users, aiming to compete with TikTok and increase ad revenue through engaging video content.

Related Articles

Popular Categories