Suspected MFA Bombing Attacks Target Apple iPhone Users
ID: 2e170efd-2077-560a-a61e-f9272fdbd0a7
STIX ID: report--2e170efd-2077-560a-a61e-f9272fdbd0a7
Feed Name: Dark Reading
Date Published: 2024-03-28
Date Updated: 2026-04-21
Author: Jai Vijayan, Contributing Writer, Elizabeth Montalbano, Contributing Writer
Attackers are conducting targeted MFA-bombing (multifactor fatigue) campaigns against Apple iPhone users by flooding devices with password-reset push notifications and following up with vishing calls that spoof Apple Support; the technique appears to bypass CAPTCHA/rate limits and may enable account takeover without prior credential theft, with high-value individuals (e.g., tech and crypto execs) likely targets.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
