You can make a difference in the Apple Support Community!

When you sign up with your Apple Account, you can provide valuable feedback to other community members by upvoting helpful replies and User Tips.

How to stop Pegasus Spyware email spam?

I’ve received an email saying:


Hello pervert, I've sent this message from your iCloud mail.


I want to inform you about a very bad situation for you. However, you can benefit from it, if you will act wisely.


Have you heard of Pegasus? This is a spyware program that installs on computers and smartphones and allows hackers to monitor the activity of device owners. It provides access to your webcam, messengers, emails, call records, etc. It works well on Android, iOS, and Windows. I guess, you already figured out where I'm getting at.


It's been a few months since I installed it on all your devices because you were not quite choosy about what links to click on the internet. During this period, l've learned about all aspects of your private life, but one is of special significance to me.

what is this about ??


[Re-Titled by Moderator]

iPhone 13 Pro Max, iOS 17

Posted on May 24, 2024 12:14 AM

Reply
Question marked as Top-ranking reply

Posted on Jun 1, 2024 9:37 AM

I’ve had an email sent from my own email address threatening contact everyone who has my address. They say they are using Pegasus and will release my information in two day. Would they normally send proof of what they say they have?



51 replies

Sep 9, 2024 7:49 AM in response to Kurt Lang

I agree it is a scam however they do have all my information in the email though the ss# is all x’d out but for the last two numbers which are wrong. Lastly a picture of the house across the road. Its a picture of pine trees along my neighbors backyard fence. Odd those trees were cut down over a year ago, which tells me it is a street view likely google maps. Google earth car drive by here about 2 years ago i remember this a security alert from a security camera on my fence the recorded it going west

Anyway my information is out on the web because of a Llc company I owned. But for the trees and the SSN I would probably believe the email. Nope no gottcha not this time

Oct 3, 2024 7:29 AM in response to KI7PBG

KI7PBG wrote:

scam my mail program marked as junk but the mail did not come from you he sticks your email as a header, if you view the source of his email , or the alleged one that came from your account you will see it actually come from this address from (me942.com unknown [109.172.38.168]) <==== with this IP. clearly not icloud. delete it and move on with your day nothing will happen.


That’s just not where that spam is actually from.


If it were, this whole spam campaign would have been over years ago.


That’s “just” somebody’s compromised equipment, or compromised credentials.


That and many other examples are being controlled from elsewhere.


Part of a botnet.


Malware and spam is a business, and quite often with a lot of “borrowed” computer resources.


All sending out creative fiction solicitations in this case, or propaganda, or pharmaceutical ads, or whatever is profitable. Or other attacks against re-used passwords, or weak or compromised passwords, or known and unpatched vulnerabilities. Or phishing for credentials at millions-scale, as one recent legal case and arrests has alleged. Or running distributed denials of service against individuals or organizations, overrunning their network bandwidth, or filling their mailboxes, or whatever.

Sep 2, 2024 10:32 AM in response to Swimteam71

Swimteam71 wrote:

I got the same thing but mine has my phone number, first and last name and a google image of my house. they said they have my camera hacked and my mic. is it still a scam or should I be worried.


It’s still a scam. If they had what they claim, they’d show you.


All of what you’ve been provided is widely available thanks to multiple data breaches, or, with Street View, available to all and easily automated.


Again, they haven’t shown you anything not already in what (in 2024) amounts to the public record.


If they had hacked your equipment, they’d show you that.


Panic works though, and I’m sure this’ll be profitable to the scammers, assuming they can retain access to Street View and other parts of the scam. Breached data though, is endemically available.


TL;DR: higher effort, same scam.

Jun 1, 2024 9:41 AM in response to hoo273

hoo273 wrote:

I got the same email this morning at 12.59am (Pacific time zone). Sounds like a phishing scam. But it is interesting that it was send to my IOx email. How did he or she find my email?


Visit https://haveibeenpwned.com/ and enter some email addresses of your acquaintance, and see which data breaches included those addresses.


This list is akin to what Apple does with their password security recommendations.


There’s more about an already-massive breach becoming known right now, involving Ticketmaster, Santander, and quote possibly multiple other vendors via Snowflake.

Jun 1, 2024 9:50 AM in response to 214oKutaFvo

214oKutaFvo wrote:

I’ve had an email sent from my own email address threatening contact everyone who has my address. They say they are using Pegasus and will release my information in two day. Would they normally send proof of what they say they have?


The “hey pervert” scam is being spammed to most of the internet. You can use DuckDuckGo or another search engine and search for other discussions. It’s a very common topic.


I’ve been getting copies of that scam for months. Multiple copies.


Variations of that scam go back to 2018, and earlier. From 2018:


https://krebsonsecurity.com/2018/07/sextortion-scam-uses-recipients-hacked-passwords/


More info? See my replies above, among others.

Sep 5, 2024 7:14 PM in response to Linz23deport

Linz23deport Said:

This just happened to me an hour ago. Requesting money or a video will be released.

———-


Report this to the Federal Government:

It’s a scam. I got the same thing, but from a more political spectrum. So, report it to the FTC: https://reportfraud.ftc.gov/. Your report will be in their database, and they’ll have something to go by when then catch these punks.

How to stop Pegasus Spyware email spam?

Welcome to Apple Support Community
A forum where Apple customers help each other with their products. Get started with your Apple Account.