Cleverly designed website steals the credentials of Apple customers

Oct 10, 2012 19:41 GMT  ·  By

Apple customers, beware! Cybercriminals are once again out to get your Apple IDs with the aid of a malicious spam campaign that’s designed to lure users to a phishing website.

The emails, entitled “Apple ID Cancelled,” inform the recipient of the following: Your Apple ID has been temporarily suspended! Somebody else just tried to sing in into your Apple account from another IP address. Please re-confirm your identity today or your account will be suspended due to concerns we have for the safety and integrity of the Apple Community.

Please click here to Activate your Apple ID [link].

Websense experts reveal that users who click on the link are taken to a page that replicates the legitimate My Apple ID site. Here, victims are presented with the known login form.

However, customers who provide their credentials and press the Sign In button aren’t actually logging in to Apple’s services. Instead, they’re handing over their credentials to cybercriminals.

In case you’ve already fallen for this scam, be sure to immediately change your Apple ID password.