Since Apple iCloud saves sensitive and personal data like images, emails, and documents, hackers often target Apple iCloud.
Breaching iCloud grants hackers access to sensitive information, allowing them to abuse or sell the data for financial gain and other illicit objectives.
Not only that, but even successful iCloud breaches may also lead to unauthorized access to the connected devices and services.
Cybersecurity analysts at Avast Security recently discovered that hackers actively attack thousands of users with fake iCloud storage alerts.
Compounding the problem are zero-day vulnerabilities like the MOVEit SQLi, Zimbra XSS, and 300+ such vulnerabilities that get discovered each month. Delays in fixing these vulnerabilities lead to compliance issues, these delay can be minimized with a unique feature on AppTrana that helps you to get “Zero vulnerability report” within 72 hours.
Fake iCloud Storage Alert
Avast recently warned of a new scam in which hackers are actively attacking thousands of users with fake iCloud storage email alert which states:-
“Your iCloud storage is nearly full”
In this new scam, threat actors primarily targeted users from the following countries:-
- United States of America
- France
- Australia
- Italy
- Spain
The fake email alert contains malicious content like Phishing URLs that the threat actors could exploit to steal sensitive, personal, and financial data from the targeted users.
Hackers exploit phishing methods as they effectively trick individuals into revealing sensitive information.
Phishing often involves tricky emails or websites that appear legitimate, and by manipulating human psychology, the threat actors gain unauthorized access to accounts and conduct illicit activities.
As a recommendation, security experts strongly urged users to remain vigilant and beware of emails received from unknown sources.
IoCs
- skystarsfavouritetra4ffic[.]top
- orchardgroove[.]com
- outdoor-garden[.]club
Try Kelltron’s cost-effective penetration testing services to evaluate digital systems security. Free demo available.