Skip to content
Tech News
← Back to articles

Apple account change alerts abused to send phishing emails

read original get Apple Security Alert Signaling Kit → more articles
Why This Matters

This emerging phishing tactic highlights how cybercriminals are increasingly exploiting legitimate Apple notifications to deceive users, making scams more convincing and harder to detect. It underscores the need for heightened awareness and improved security measures for consumers and the tech industry alike.

Key Takeaways

Apple account change notifications are being abused to send fake iPhone purchase phishing scams within legitimate emails sent from Apple's servers, increasing legitimacy and potentially allowing them to bypass spam filters.

A reader shared an email with BleepingComputer that appeared to be a standard Apple security notification that stated their account information had been updated.

However, embedded within the message was a phishing lure claiming that an $899 iPhone purchase had been made via PayPal, along with a phone number to call to cancel the transaction.

"Dear User 899 USD iPhone Purchase Via Pay-Pal To Cancel 18023530761," reads the Apple account phishing email.

"The following changes to your Apple Account, [email protected], were made on April 14, 2026 at 7:01:40 PM GMT:"

"Shipping Information"

Callback phishing email abusing Apple Account change notifications

Source: BleepingComputer

These emails are designed to trick recipients into thinking their accounts were used for fraudulent purchases and scare them into calling the scammer's "support" number.

When calling the number, scammers typically try to convince victims that their accounts have been compromised and may instruct them to install remote access software or provide financial information.

... continue reading