ADVERTISEMENT

Apple Pay phishing scam steals 2FA codes in real-time vishing attack

Security researchers on Friday are warning Apple users about a sophisticated phishing scam that tricks victims into believing their Apple Pay account has been hacked – then steals their login credentials and two-factor authentication (2FA) codes in real time.

Apple Pay 2

Image by Thaspol Sangsee | Shutterstock

Stefanie Schappert
Stefanie Schappert Senior Journalist
February 6, 2026 Updated: February 6, 2026 3 min read
Key takeaways:

How the fake Apple Pay alert works

Malwarebytes Apple Pay phishing text
Fake unauthorized transactions submitted by users included an Apple Gift Card purchase for $279.99 and an Apple Store receipt for a 2025 MacBook Air 13-inch laptop with M4 chip priced at $1,157.07. Image by Malwarebytes.

The real-time 2FA trap

ADVERTISEMENT
hackers phishing
Scammers are bypassing 2FA in real time in the latest phishing campaign targeting Apple Pay users. Image by Cybernews.
Jurgita Lapienyte justinasv Izabele Pukenaite vilius Ernestas Naprys Gintaras Radauskas
Don't miss our latest stories on Google News. Add us as your Preferred Source on Google
Add us as your Preferred Source on Google.

What to do if you get one

  • Change the Apple ID password immediately from Settings or appleid.apple.com, not from any link provided by email or SMS.
  • Check active sessions, sign out of all devices, then sign back in only on devices you recognize and control.
  • Rotate your Apple ID password again if you see any new login alerts, and confirm 2FA is still enabled. If not, turn it on.
  • In Wallet, check every cardfor unfamiliar Apple Pay transactions and recent in-store or online charges, and monitor bank and credit cards for several weeks
  • Check if the primary email account tied to your Apple ID is yours, since control of that email can be used to take over accounts.

ADVERTISEMENT