Apple warns iPhone users of ‘mercenary spyware’ attack in India and 91 other countries

Highlights
  • Apple warns iPhone users of mercenary spyware attack in 92 countries.
  • Apple hasn’t attributed these targeted spyware attacks to those using software like Pegasus developed by NSO Group.
  • Apple advised targetted iPhone users to enable Lockdown Mode and update to iOS 17.4.1.

Apple is warning users that they might have been victims of mercenary spyware attacks in several countries. To the same extent, an alert has been issued to iPhone owners in 92 countries, including India, but has not attributed these attacks to any specific groups. Interestingly, Apple has not revealed the names of all 92 countries where alerts were issued but we know that India is one of them.

Show Full Article

Mercenary Spyware attack on iPhone users

  • Apple has updated its support document with details on how these threat notifications work.
  • It also included information for users who might be the victims of the targets of the mercenary spyware attacks.
  • Apple hasn’t attributed these targeted spyware attacks to those using software like Pegasus developed by NSO Group, sources told The Economic Times.
  • In the threat notification email to users, Apple advised them to enable Lockdown Mode on their iPhones. This will disable several features and reduce the possibility of any spyware attacks.
  • The company is also advising iPhone users to update to iOS 17.4.1.
Apple Support document

Apple detected that you are being targeted by a mercenary spyware attack that is trying to remotely compromise the iPhone associated with your Apple ID -xxx-,” said the company in an email sent out to users on April 10th. Apple is advising target users to enlist expert guidance such as rapid-response emergency security assistance provided by the Digital Security Helpline at the nonprofit Access Now.

The support document has been updated related to the threat notifications and this explains how the mercenary spyware attacks work. Once the company detects activity consistent with the mercenary attack, it will send an email and iMessage notification to users on their email and phone numbers. A notification banner will also be displayed at the top of the Apple ID website once they sign in. 

Apple warns users to not click links, open files, install apps or share Apple ID passwords or verification codes over the phone.