Apple Outlines How It Will Notify Users Who Have Been Targeted by State-Sponsored Spyware Attacks

Earlier today, Apple announced that it had filed suit against NSO Group, the firm responsible for the Pegasus spyware that has been used in state-sponsored surveillance campaigns in a number of countries. NSO Group seeks to take advantage of vulnerabilities in iOS and other platforms to infiltrate the devices of targeted users such as journalists, activists, dissidents, academics, and government officials.

apple security banner
As part of its announcement, Apple revealed that it is notifying the "small number of users" who have been targeted via the FORCEDENTRY exploit for a now-patched vulnerability that allowed Pegasus to be installed on their devices. Apple also said that it will continue to notify users it believes have been targeted by state-sponsored spyware attacks "in accordance with industry best practices," and the company has now shared a new support document outlining how it will notify those users.

Notifications will be delivered to affected users via email and iMessage notifications to the addresses and phone numbers associated with the users' Apple IDs, with the notifications providing additional steps users can take to protect their devices. A prominent "Threat Notification" banner will also be displayed at the top of the page when affected users log into their accounts on the Apple ID web portal.

apple id threat notification
Users will never be asked to click links or install apps via the email and iMessage notifications, so users receiving notifications should always log into their ‌Apple ID‌ accounts on the web to verify that threat notifications have been issued for their accounts and to learn what to do next.

Apple acknowledges that there may be some false alarms with its notifications and that some attacks may go undetected, as it is facing constantly evolving tactics from state-sponsored attackers. Apple's threat-detection methods will similarly evolve, and so the company will not be sharing information on its methods to hinder efforts by attackers to evade detection.

Regardless of whether or not you receive a threat notification from Apple, the company advises all users to take the following steps to secure their devices:

  • Update devices to the latest software, as that includes the latest security fixes
  • Protect devices with a passcode
  • Use two-factor authentication and a strong password for ‌Apple ID‌
  • Install apps from the App Store
  • Use strong and unique passwords online
  • Don’t click on links or attachments from unknown senders

Finally, Apple shares a list of emergency resources at the Consumer Reports Security Planner website for those users who have not received an Apple threat notification but believe they may have been targeted by state-sponsored attackers to obtain expert assistance.

Note: Due to the political or social nature of the discussion regarding this topic, the discussion thread is located in our Political News forum. All forum members and site visitors are welcome to read and follow the thread, but posting is limited to forum members with at least 100 posts.

Top Rated Comments

ian87w Avatar
8 weeks ago
Good work Apple, and hopefully Apple can realize that its own mass scanning system is actually a risk to the security and privacy it's trying to protect.
Score: 28 Votes (Like | Disagree)
Gnattu Avatar
8 weeks ago

Will Apple also notify us when we are targeted by Apple created spyware attacks?
One example being CSAM.

No Apple will not . . . willingly. Once exposed by the public, Apple will try to make excuses to justify their own developed spyware.
Except they notified the public?:confused:
Score: 20 Votes (Like | Disagree)
max2 Avatar
8 weeks ago
Cool!

Way to go Apple.
Score: 19 Votes (Like | Disagree)
steve09090 Avatar
8 weeks ago

Will Apple also notify us when we are targeted by Apple created spyware attacks?
One example being CSAM.

No Apple will not . . . willingly. Once exposed by the public, Apple will try to make excuses to justify their own developed spyware.
How is CSAM spyware when they have been very open in telling people what it was and how it would work?
Score: 14 Votes (Like | Disagree)
btbeme Avatar
8 weeks ago
Serious about security and privacy. Serious enough to take on State players head-on.

While this really only affects a few dozen people globally, it is a signature for what governments and their minions are ready, capable, and willing to do. You can keep pretending that “you have nothing to hide” while your privacy (and many international and Constitutional laws) get whittled away… or you can stand up to this.

And don’t think for a minute that certain social media avenues aren’t part of this… willfully or not.
Score: 13 Votes (Like | Disagree)
goobot Avatar
8 weeks ago

It's important to boycott Israel, which is responsible for this software, as well:

https://www.nytimes.com/2021/11/08/world/middleeast/nso-israel-palestinians-spyware.html


If Apple can stop selling its products in Turkey because of economic concerns, it can certainly stop selling products in Israel for software concerns.
Lmao, let’s boycott a country because It has a company I don’t like, let’s boycott America cause Facebook exist and every other country in the world cause they all have only good players
Score: 11 Votes (Like | Disagree)

Related Stories

apple security banner

Apple Reportedly Notified Some U.S. State Department Employees They May Have Been Targeted by NSO Group Spyware

Friday December 3, 2021 8:56 am PST by
Apple has notified at least nine U.S. Department of State employees that they may have been targeted by state-sponsored spyware created by Israeli company NSO Group, according to a Reuters report citing four people familiar with the matter. A spokesperson for NSO Group told Reuters that it will investigate and take legal action against customers using its tools illegally if necessary."If our ...
tmobilelogo

T-Mobile's Latest Data Breach Linked to SIM Swap Attacks

Wednesday December 29, 2021 10:15 am PST by
Back in August, T-Mobile suffered a massive data breach impacting more than 50 million current, former, and prospective T-Mobile users, and now the cellular company is dealing with another smaller data breach incident. Reports yesterday suggested that T-Mobile was aware of unauthorized activity affecting some customer accounts, and now, T-Mobile has confirmed that those reports were due to...
powerdir exploit microsoft

Microsoft Discovered New 'Powerdir' macOS Vulnerability, Fixed in 12.1 Update

Monday January 10, 2022 9:17 am PST by
Microsoft's 365 Defender Research Team this morning published details on a new "Powerdir" macOS vulnerability that let an attacker bypass the Transparency, Consent, and Control technology to gain unauthorized access to protected data. Apple already addressed the CVE-2021-30970 vulnerability in the macOS Monterey 12.1 update that was released in December, so users who have updated to the...
apple id website 1

Apple ID Website Gets Design Overhaul

Thursday November 4, 2021 10:19 am PDT by
Apple has redesigned its Apple ID website, introducing an entirely new look that's much more modern and clean than the prior design that was used. The Apple ID landing page has been updated with a new dot and Apple logo design, along with information on what the Apple ID website can be used for. The prior design was graphics heavy, featuring a large banner with people using various Apple...
nso israeli surveillance firm

Apple Aims to Cut Down on Spyware With Lawsuit Against NSO Group

Tuesday November 23, 2021 10:09 am PST by
Apple today announced that it has filed a lawsuit against Israeli firm NSO Group and its parent company with the aim of holding it accountable for targeting Apple users with spyware used for surveillance purposes. In the lawsuit, Apple offers up information on how NSO Group infiltrated the devices of iPhone owners and how it utilized the Pegasus spyware to do so. Apple is asking for a...
macbook pro sizes space gray

DoJ Arrests Hacker Involved With REvil Group That Stole Apple's MacBook Pro Schematics

Monday November 8, 2021 4:28 pm PST by
The United States Justice Department today announced that it has arrested Ukrainian Yaroslav Vasinskyi for his involvement with REvil, a group that executed ransomware attacks against businesses and government entities in the United States. REvil in April targeted Apple supplier Quanta Computer and stole schematics of the design of the 14 and 16-inch MacBook Pro models that were later...
whatsapp notification

WhatsApp Starts Rolling Out Profile Pictures in iOS Message Notifications

Thursday January 6, 2022 1:53 am PST by
WhatsApp is testing a helpful new feature on iOS that displays profile pictures in system notifications when users receive new messages from chats and groups. Image credit: WABetaInfo First spotted by app specialist WABetaInfo, the first new feature for the platform in 2022 uses APIs in iOS 15 to add the WhatsApp profile images to notifications in top-screen banners and in the Notification...
f1623086279

iOS 15 Features Redesigned Notifications and New Notification Summary Sorted by Priority

Monday June 7, 2021 10:22 am PDT by
Apple today, with iOS 15, announced a slew of new changes coming to notifications on iPhone, including a completely redesigned interface and a new way to summarize notifications based on activities. Notifications now have a completely new design on the lock screen, featuring richer images for messages, and a cleaner more compact look. With the redesign, iOS 15 also introduces a Notification ...

Popular Stories

ios 15

Apple Releases Minor iOS 15.2.1 and iPadOS 15.2.1 Updates

Wednesday January 12, 2022 10:05 am PST by
Apple today released minor 15.2.1 updates for iPhone and iPad users, and the software comes one month after Apple launched iOS 15.2 and iPadOS 15.2 with a slew of improvements. The iOS 15.2.1 and iPadOS 15.2.1 update can be downloaded for free and the software is available on all eligible devices over-the-air in the Settings app. To access the new software, go to Settings > General >...
maxresdefault

Hands-On With LG's 32-Inch UltraFine OLED Pro Display

Wednesday January 12, 2022 1:12 pm PST by
LG in December announced the launch of its new 2022 32-inch UltraFine OLED Pro display, and in our latest YouTube video, we went hands-on with it to see how it compares to Apple's Pro Display XDR and whether it might be worth picking up depending on the price point. Subscribe to the MacRumors YouTube channel for more videos. Officially named the "32BP95E," the display features a resolution of ...
iPhone 14 Mock pill and hole

iPhone 14 Pro Now Rumored to Feature Both Pill-Shaped and Circular Cutouts

Wednesday January 12, 2022 9:26 am PST by
Apple is widely expected to remove the notch on iPhone 14 Pro models, but there have been conflicting rumors about the new design. Early rumors suggested that Apple would adopt a hole-punch design with Face ID somehow moved completely under the display, and later it was rumored that there would be a pill-shaped cutout instead. Now, display industry consultant Ross Young has claimed that...
AirPods Pro Gen 3 Mock Feature Red

AirPods Pro 2 Could Start a New Accessory Ecosystem

Friday January 14, 2022 2:34 am PST by
Apple's second-generation AirPods Pro could arrive alongside a new series of accessories, recent leaked images suggest. Alleged leaked photos of the next-generation AirPods Pro obtained by MacRumors showed a charging case with a metal loop on the side for attaching a strap. Apple has not used this design for any of its other AirPod models and it is unclear why it would be added in this...
iPhone 14 Mock Pill Blue Feature

iPhone 14 Pro Again Rumored to Feature Upgraded 48-Megapixel Camera

Wednesday January 12, 2022 6:18 am PST by
iPhone 14 Pro models will feature a 48-megapixel camera, according to Taiwanese research firm TrendForce. Specifically, this refers to the rear-facing Wide camera, which is currently 12 megapixels on iPhone 13 Pro models. The addition of a 48-megapixel Wide camera on iPhone 14 Pro models has already been mentioned by multiple sources, including analyst Ming-Chi Kuo, who expects the upgraded...
wordle

Clones of Popular 'Wordle' Game Flooding App Store, Including One Charging $30 Per Year [Updated]

Tuesday January 11, 2022 1:39 pm PST by
If you're a regular internet user you've probably heard of popular web-based daily guessing game Wordle, created by Josh Wardle. The game, which is entirely free to play, was introduced last fall and has been spreading like wildfire. Wordle asks players to guess a five letter word by identifying which letters are in the word and are located in the right location. Players get six guesses per...
apple employees trio

Apple Outlines $30M Bag Check Lawsuit Settlement on Legal Website

Wednesday January 12, 2022 3:28 pm PST by
Apple in November settled a long-running lawsuit over employee bag checks, with the Cupertino company agreeing to pay $29.9 million to employees who were subjected to off-the-clock bag searches, and now details about the settlement are available on Apple's website. California employees first sued Apple in 2013, and in 2015, the case escalated into a class action lawsuit. Employees claimed...
iMac 27 inch 2020 sale

Deals: Apple's 21.5-Inch iMac Hits Record Low Price of $599.99 ($499 Off) [Update: Out of Stock]

Thursday January 13, 2022 4:05 am PST by
Amazon today has a great deal on the 2017 Intel 21.5-inch iMac (2.3GHz, 8GB RAM, 256GB SSD), priced at $599.99, down from $1,099.00. This is the best price we've ever tracked on this model, and it's only available at Amazon. The sale price will be reflected after an automatic coupon is applied at checkout. Note: MacRumors is an affiliate partner with some of these vendors. When you click a...