Scammers Target iPhone Duo Pre-Orders Using Fake Website
As the launch date for the iPhone Duo approaches, with pre-orders set to commence on Friday, October 16, cybersecurity experts have issued a warning regarding a fraudulent website designed to dupe potential buyers.
This malicious site mirrors the legitimate pre-order page, enticing users with a tempting offer of a $500 discount voucher, touted as an “Authorized Partner Exclusive.”
Details of the Scam
According to security analysts from Malwarebytes, this counterfeit website employs the DarkSword exploit chain. This set of vulnerabilities specifically targets older iPhone models that have not received recent software updates. Merely visiting the site can initiate the exploit without any user interaction.
“Behind its Apple-style design and $500 voucher, the page uses the leaked DarkSword exploit chain to try to break into vulnerable iPhones. If it succeeds, a separate payload attempts to steal saved credentials, cryptocurrency wallet data, and notes. You don’t have to fill in the form, tap a download, or approve anything. Opening the page is enough to start the attempt.”
Potential Risks for Users
If the exploit is successfully executed, it can gather device information, installed apps, and the contents of Apple Notes. It then seeks to extract sensitive data from various cryptocurrency wallets, including:
- MetaMask
- Phantom
- Trust Wallet
- Coinbase Wallet
- Exodus
- Tonkeeper
“The code looks for cryptocurrency wallets… If it finds a targeted wallet… it attempts to upload wallet files, recovered keychain data, and photo thumbnails. Exposure of wallet files or credentials could put funds at risk.”
Furthermore, the malware can access other personal information such as messages, contacts, call histories, and location data, potentially leading to further breaches of privacy.
Security Precautions
The exploit was publicly disclosed by Google earlier this year, with Apple issuing a security patch shortly thereafter. To protect against such threats, users are advised to:
- Avoid clicking on suspicious links or those from unknown sources.
- Install software updates on their devices promptly to safeguard against vulnerabilities.
