Skip to content
Tech News
← Back to articles

AnonyMousKIT PhaaS uses voice AI agents to phish iPhone passcodes

read original more articles
Why This Matters

The emergence of AnonyMousKIT highlights a growing threat in the tech industry, where sophisticated voice AI-driven phishing services are used to unlock stolen iPhones and access sensitive user data. This development underscores the need for enhanced security measures and awareness among consumers to protect against such targeted attacks.

Key Takeaways

A newly uncovered phishing-as-a-service (PhaaS) platform called AnonyMousKIT automates the retrieval of codes used to unlock stolen Apple devices and disable the Activation Lock feature.

The illegal service has been active since early 2024 and is powering a structured ecosystem that sells stolen iPhones, harvests Apple IDs, accesses iCloud backups, and Keychain credentials.

Researchers at threat intelligence platform SOCRadar took advantage of the platform operator's use of bare relative paths to gather information on how the service works, its operators, and infrastructure.

SOCRadar found that AnonyMousKIT is connected to 506 domains and is fueling a sprawling business with 168 storefront brands acting as resellers.

Overview of the operation

Source: SOCRadar

The researchers recovered records of 200 calls made to victims between August 2025 and May 2026, using 55 distinct interaction transcripts handled by a voice AI agent operating under five personas.

SOCRadar notes that the calls cost the operator about $0.10 per attempt, adding that 90% of the calls were made to Brazil.

The AnonyMousKIT panel

Source: SOCRadar

... continue reading