iPhone: Having your mobile stolen is the worst, because that’s where you lead your life. But that on top of that they try to rip you off once they have stolen it is already the last straw, the auction. Well, that is happening, because the OSI, the Spanish Internet Security Office, has detected cases in which users, after having suffered the physical theft of their iPhone mobile terminals, after a while receive emails or messages that impersonate their identity from Apple support.
They are told that their terminal has been found and that to obtain all the information they must access a link that redirects to a fraudulent web page and in which they must provide their Apple ID credentials. And that’s where the phishing scam begins to completely take over the mobile.
Robbed and Swindled
According to the OSI, this scam is aimed at people who have suffered the theft of an iPhone, whatever model it is. Over several days, weeks, or even months, you start receiving fraudulent emails or messages, also known as phishing or smishing, posing as Apple support.
They indicate to the user that their terminal has been located and add an excuse to access the link that accompanies it, such as receiving more information, discovering its location or blocking it. The content of the emails and messages could be similar to the following, always accompanied by a link that redirects to a fraudulent website:
“Dear Customer, Your iPhone 12 Pro Max has been located. To locate or lock your device visit.”
“Dear Laura, We have tried to contact you by phone without success. Do you have a lost or stolen iPhone 12 Pro Max? Apple Store.”
“Your iPhone has been recovered at a Telestore.”
“Your missing” iPhone X has been connected to the Internet.”
In the case of accessing the link provided, you will be redirected to a fraudulent website where you will be asked for your Apple ID credentials. In the case of doing so, cybercriminals gain access to your account, and they will unlink the iPhone from it, thus having full control over it since it is unlinked from your account.