logo

Phishing texts trick Apple iMessage users into disabling protection

ID: f4aa3142-70b9-5afe-a6de-3f688e39f64b

STIX ID: report--f4aa3142-70b9-5afe-a6de-3f688e39f64b

Feed Name: Bleeping Computer

Date Published: 2025-01-12

Date Updated: 2026-03-27

Author: Lawrence Abrams

...
...

Threat actors are running smishing campaigns that exploit iMessage behavior by asking recipients to reply (e.g., 'Y') so links from unknown senders become re-enabled, bypassing Apple’s default anti-phishing link disabling. This social engineering TTP both restores clickable links and signals to attackers that the number is responsive, increasing targeting risk. Users are advised not to reply to such texts and to verify claims directly with the relevant organization.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.