27.03.2024 20:42:21
|
Apple Users Targeted With MFA Bombing Attacks
(RTTNews) - Apple Inc. (AAPL) users have recently been facing a new and troubling threat known as multi-factor authentication or MFA bombing attacks or push notification spam.
This tactic, as described by Brian Krebs at Krebs on Security, involves a continuous stream of MFA requests being sent to users, prompting them to reset their Apple ID passwords.
By clicking "Allow," users are unwittingly allowing hackers to gain access to their Apple ID passwords and seize control of their accounts, which can affect all devices linked to the same ID. This attack strategy aims to induce panic and elicit compliant responses by sending a deluge of notifications and MFA messages to trick users into resetting their passwords.
Once this is done, attackers follow up with spoofed calls masquerading as Apple representatives, seeking sensitive information under the guise of protecting the victim's account from the ongoing attack. The ultimate goal is to acquire a one-time code to confirm a password reset or login attempt.
Parth Patel, a startup founder in the AI industry, shared his experience on X about how all of his Apple devices were bombarded with over 100 notifications requesting permission to reset his Apple password. These notifications were so urgent that they effectively locked up his devices until he addressed them. The attackers mimicked the official Apple helpline and requested an OTP that Patel had just received via text, emphasizing that it should not be shared with anyone.
Another individual reported to Krebs that they experienced similar reset notifications over several days, followed by a call claiming to be from Apple support. After hanging up and verifying with Apple directly, it was confirmed that no support issue existed.
These accounts, along with others detailed on Krebs' platform, highlight the necessity for Apple to implement restrictions on password resets or enhance access control measures. Since phone number spoofing is common, the safest action is to end the call and contact Apple support directly. Under no circumstances should a one-time code be shared with anyone, and Apple users need to take the necessary precautions to protect their accounts and devices from these insidious attacks.
Wenn Sie mehr über das Thema Aktien erfahren wollen, finden Sie in unserem Ratgeber viele interessante Artikel dazu!
Jetzt informieren!
Nachrichten zu Apple Inc.mehr Nachrichten
20.12.24 |
Aufschläge in New York: NASDAQ Composite letztendlich in der Gewinnzone (finanzen.at) | |
20.12.24 |
S&P 500-Handel aktuell: S&P 500 schlussendlich auf grünem Terrain (finanzen.at) | |
20.12.24 |
Optimismus in New York: NASDAQ 100 zum Handelsende mit Gewinnen (finanzen.at) | |
20.12.24 |
Börse New York in Grün: Dow Jones liegt nachmittags im Plus (finanzen.at) | |
20.12.24 |
Starker Wochentag in New York: NASDAQ Composite im Plus (finanzen.at) | |
20.12.24 |
Pluszeichen in New York: S&P 500 am Nachmittag freundlich (finanzen.at) | |
20.12.24 |
NASDAQ-Handel: Das macht der NASDAQ 100 am Nachmittag (finanzen.at) | |
20.12.24 |
Gute Stimmung in New York: So performt der NASDAQ 100 mittags (finanzen.at) |
Analysen zu Apple Inc.mehr Analysen
16.12.24 | Apple Overweight | JP Morgan Chase & Co. | |
29.11.24 | Apple Neutral | UBS AG | |
20.11.24 | Apple Neutral | UBS AG | |
19.11.24 | Apple Overweight | JP Morgan Chase & Co. | |
15.11.24 | Apple Hold | Jefferies & Company Inc. |