Cybernews Apple Users Targeted by Phishing Scam Threatening iCloud Data Deletion
Article Content
- •Fraudulent emails threaten iCloud users with data deletion to prompt upgrades.
- •Scam emails mimic legitimate Apple notifications, increasing their effectiveness.
- •Users are advised to report suspicious emails and verify storage status through official channels.
A new phishing scam is targeting Apple users with deceptive emails claiming that their iCloud storage is full and threatening imminent deletion of their photos and videos. The scam emails, which appear to be from Apple, instruct users to click a link to upgrade their storage, leading to a phishing website designed to capture personal and financial information. The fraudulent messages often coincide with legitimate notifications from Apple, making them particularly convincing. Variations of the scam include alarming subject lines such as 'We’ve blocked your account!' and 'Your payment method has expired!'. Users who do not respond may receive follow-up emails with escalating threats of data deletion. The UK consumer body Which? has issued warnings about the scam, urging users to be vigilant. Signs of the scam include suspicious email addresses and poor grammar. Victims who provide their bank details risk further financial theft or data resale on the dark web.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (4)
Continue Reading
Critical Zero-Day Vulnerability in Cisco Secure Email Gateway Exploited On September 14, 2026, Cisco disclosed a critical SQL injection vulnerability (CVE-2026-76461) in its Secure Email Gateway, allowing unauthenticated remote attackers to execute arbitrary commands with root privileges. This vulnerability arises from insufficient validation in the email parsing logic. Cisco confirmed…
Critical WSO2 API Manager Vulnerability Under Active Exploitation A critical vulnerability (CVE-2026-5430) in WSO2 API Manager is being actively exploited, allowing unauthenticated attackers to forge admin tokens via JWT authentication bypass. This flaw, which has a CVSS score of 10.0, affects multiple WSO2 products including API Manager, Universal Gateway, Traffic Manager, and API…