news.mlab.sh
Back to the feed
threat-intel

Apple Warns Users in 110 Countries They May Be Targets of Mercenary Spyware

High
Summary

Apple is warning users in over 150 countries about potential mercenary spyware attacks, sending notifications via email and in-app alerts. These sophisticated attacks target specific individuals – journalists, activists, politicians, and diplomats – and require significant resources to develop and deploy. Apple is deliberately withholding details about the attacks to prevent attackers from adapting their methods.

Apple has issued a warning to users in over 150 countries, alerting them to the possibility of being targeted by mercenary spyware attacks. These attacks are characterized by their high cost, advanced techniques, and global reach, making them some of the most sophisticated digital threats available. Apple began sending these threat notifications in late 2021, and continues to notify users about potential targeting.

Typically, these notifications are sent to individuals based on their roles – such as journalists, activists, politicians, and diplomats – and their devices. The attacks require considerable investment and expertise to develop and deploy, differentiating them from standard cybercrime activity. Apple states that it cannot disclose specifics about the attacks to avoid aiding the attackers in refining their tactics.

Users are notified through three channels: an in-app alert on their iPhone, an email notification sent to their associated Apple account email address ([email protected][.]com), and a banner notification on the account.apple[.]com login page. Apple urges users to take these alerts seriously and implement security measures to protect their devices and accounts.

Recommended security steps include updating devices to the latest software version, securing devices with a passcode, Touch ID, or Face ID, enabling two-factor authentication (2FA) for the Apple account, turning on Stolen Device Protection, installing apps only from trusted sources, and enabling Lockdown Mode. It is advised to refrain from opening links or attachments from unknown senders.

Read the full article at The Hacker News