Recent ‘MFA Bombing’ Attacks Targeting Apple Users

Credit to Author: BrianKrebs| Date: Tue, 26 Mar 2024 15:37:54 +0000

Several Apple customers recently reported being targeted in elaborate phishing attacks that involve what appears to be a bug in Apple’s password reset feature. In this scenario, a target’s Apple devices are forced to display dozens of system-level prompts that prevent the devices from being used until the recipient responds “Allow” or “Don’t Allow” to each prompt. Assuming the user manages not to fat-finger the wrong button on the umpteenth password reset request, the scammers will then call the victim while spoofing Apple support in the caller ID, saying the user’s account is under attack and that Apple support needs to “verify” a one-time code.

Read more

Welcome to high tech hacking in 2022: Annoying users until they say “yes”

Categories: News

Tags: MFA fatigue

Tags: 2FA

Tags: push notification

Tags: security

Tags: phishing

Tags: attack

Tags: burnout

Tags: stress

Tags: verify

Cybercriminals’ new tactic of simply boring victims into submission has had some surprising succcess.

(Read more…)

The post Welcome to high tech hacking in 2022: Annoying users until they say “yes” appeared first on Malwarebytes Labs.

Read more