Hackers Exploit iCloud Calendar to Deliver Phishing Scams via Apple Servers
Hackers are circumventing SPF, DKIM, and DMARC checks by using iCloud Calendar invites to spread phishing scams through Apples trusted servers. The ex
Hackers are circumventing SPF, DKIM, and DMARC checks by using iCloud Calendar invites to spread phishing scams through Apples trusted servers. The exploit prompts users to phone a support number by inserting fictitious refund messages inside calendar invites Notes area. Once connected, scammers coerce victims into installing remote access software, which makes system takeover and data theft possible. The emails sent via Apples own infrastructure lend legitimacy to the hoax, making it more difficult to identify. Microsofts Sender Rewriting Scheme forwards invitations to group lists, increasing reach even more. Apple hasnt spoken out about the problem. To keep safe, users are urged to remove dubious invitations, refrain from phoning numbers on the list, and use robust antivirus and ransomware protection.
Read More..
B2B Tech News | 5 months ago