Military & Security

Fake Apple Support AI Calls Target Stolen-Device Owners for Passcodes and 2FA Codes

· August 26, 2026
Fake Apple Support AI Calls Target Stolen-Device Owners for Passcodes and 2FA Codes

What happened

Cybersecurity researchers uncovered a phishing-as-a-service (PhaaS) operation aimed at stolen Apple devices. The platform, called AnonyMousKIT by SOCRadar Threat Research Unit, uses AI-powered voice agents to call victims pretending to be Apple Support. These calls request device passcodes and two-factor authentication codes to bypass Apple’s Activation Lock, a security feature that prevents unauthorized use of lost or stolen iPhones and iPads.

The risk

This scheme pressures device owners by exploiting trust in official-looking AI voice calls. Activation Lock is a significant deterrent against resale or use of stolen Apple devices, but attackers rent out this voice phishing service to systematically strip stolen phones of their security. The approach lowers the barrier for thieves to access locked devices by outsourcing social engineering tasks to scalable AI agents, increasing the volume and success rate of these scams.

Why it matters

For Apple users, this attack method weakens the effectiveness of Activation Lock by targeting the human element rather than the technology directly. This forces device owners to be more vigilant about unsolicited calls claiming to be Apple Support, especially calls asking for sensitive passcodes or 2FA information. For security teams, the trend shows social engineering operations evolving with AI to automate and scale fraud. It raises the bar for customer education and detection of fake support calls.

Who should pay attention

Device owners with Apple products should be cautious about any unsolicited support calls, verifying their authenticity independently before sharing any security codes. Security teams and fraud analysts need to watch for AI-based social engineering methods gaining traction in the wild, which complicate traditional detection methods. Mobile security providers might face growing pressure to develop controls that can flag or block these AI-driven phishing attempts.

What to watch next

Monitoring developments in AI voice phishing tools and their deployment will be critical. Look for Apple and other vendors to potentially increase customer verification processes around support calls and Activation Lock recovery. Also watch for law enforcement and threat intelligence updates on phishing-as-a-service platforms exploiting AI voice agents. Finally, keep an eye on new countermeasures in mobile endpoint security that address these AI-scaled social engineering tactics.

AI Quick Briefs Editorial Desk

Stay ahead of AI Get the most important AI news delivered to your inbox — free.