Kaspersky Finds Cybersecurity Threat That Targets iPhone Users via Malicious iMessage Attachment

The spyware extracts private information like microphone recordings, photos from instant messengers, geolocation, and other data.

Advertisement
Written by Manas Mitul | Updated: 3 June 2023 15:17 IST
Highlights
  • The malware installs on iPhones via a malicious iMessage attachment
  • Kaspersky calls the cyberattack “Operation Triangulation”
  • Threat doesn’t require the iPhone user to do anything

Disabling the iMessage service would prevent iOS devices from the attack

Photo Credit: Unsplash/ William Hook

Prominent cybersecurity and anti-virus firm Kaspersky has discovered a new cyberattack threat that targets iPhone models running older versions of iOS via iMessage application. The malware, found when the company was monitoring its own Wi-Fi network for mobile devices, infects the phone via a received iMessage, which contains a malicious attachment. The threat doesn't require the iPhone user to do anything and utilises iOS vulnerability to install a spyware that takes complete control of device and user data.

According to a report about their findings published by Kaspersky, the malicious attachment sent via iMessage executes a code without the need for any action from the user. The malicious code then runs a set of commands for collection of private user data.

Kaspersky CEO Eugene Kaspersky tweeted about the iOS cyberattack, detailing that the spyware extracts private information like microphone recordings, photos from instant messengers, geolocation, and other data and transmits it to remote servers. The firm has dubbed the cyberattack threat as “Operation Triangulation.”

Advertisement

Kaspersky said that the malware was found on the iPhones of dozens of employees and could target other iPhone users as well. He also added that the threat had been neutralised and details of the vulnerability have been sent to Apple. The CEO also noted that disabling the iMessage service would prevent vulnerable iOS devices from the attack.

Advertisement

The company said that after the malware is successfully installed on the device, the initial text and the accompanying exploit in the iMessage attachment are deleted. Kaspersky's report said the attack was ongoing, and iOS 15.7 was the most recent version among the devices that were successfully targeted. iPhone models running iOS 16 appear to be safe from the threat, but Kaspersky did mention in the comments section of its report that they could not guarantee that other iOS versions were safe.

On Friday, Kaspersky also released tools for users to check if their device was infected.

Advertisement

Back in February, Apple released updates that fixed major vulnerabilities with iOS 16.3 and macOS 13.2 for supported iPhone, iPad and Mac models. At the time, Apple credited the researchers who found the flaws that allowed a remote user to bypass protections put in place by Apple and gain access to a user's personal data as well as their camera, microphone, and call history.


Apple's annual developer conference is just around the corner. From the company's first mixed reality headset to new software updates, we discuss all the things we're looking forward to seeing at WWDC 2023 on Orbital, the Gadgets 360 podcast. Orbital is available on Spotify, Gaana, JioSaavn, Google Podcasts, Apple Podcasts, Amazon Music and wherever you get your podcasts.
Affiliate links may be automatically generated - see our ethics statement for details.
 

For the latest tech news and reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who'sThat360 on Instagram and YouTube.

Advertisement

Related Stories

Popular Mobile Brands
  1. Moto G67 Power 5G India Launch Date, Key Features Announced
  2. TRAI, DoT Approve Presentation of Caller Names During Incoming Calls
  3. Oppo Find X9 Series Confirmed to Be Available in India via Flipkart
  4. Nothing Phone 3a Lite Launch Today: Everything You Need to Know
  5. WhatsApp Might Soon Let You Set a Profile Cover Photo, Just Like Facebook
  6. Apple Might Upgrade These MacBook, iPad Models With OLED Displays
  7. Oppo Find X9 Series With Hasselblad-Tuned Cameras Launched Globally
  8. iQOO 15 Colourways, Key Features Teased Ahead of Launch in India
  9. Here's When OpenAI Plans to Launch Its First 'AI Researcher'
  10. Microsoft CEO Satya Nadella Suggests Next Xbox Will Be Closer to Windows PC
  1. Visa to Add Support for Four Stablecoins Across Four Blockchains as Usage Surges
  2. Samsung Wallet Announces Support for Unlocking Mahindra e-SUV Using Smartphones
  3. Apple Shares Massive Dataset to Help Researchers Build Nano Banana-Like AI Models
  4. Microsoft CEO Satya Nadella Suggests Next-Gen Xbox Will Be Windows PC and Console Hybrid
  5. iQOO 15 Colourways, Key Specifications Teased Days Ahead of Launch in India
  6. Oppo Find X9, Find X9 Pro Confirmed to Be Available in India via Flipkart
  7. OpenAI Plans to Launch Automated 'AI Researcher' For Autonomous Scientific Discoveries by 2028
  8. Moto G67 Power to Come With 7,000mAh Battery, 50-Megapixel Sony Camera; India Launch Date Announced
  9. Anthropic Tipped to Release Claude 4.5 Opus Soon, Said to Be Focused on Resisting Jailbreaks
  10. Insta360 X4 Air Launched With 8K Video Recording, Support for Replaceable Lenses: Price, Specifications
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.