Phishing site after theft
Hi,
My wife's iPhone was recently stolen and turned off.
I used my device for switching her phone to "lost mode", and entered my phone number in the "lost message" which was to be displayed on the stolen device's screen when turned on.
Few hours afterwards I started receiving the following text messages from "Apple" to my device:
---
Apple Customer,
Your lost iPhone XS Silver linked to <my wife's apple ID> has been found and temporarily connected to iCloud. View location: map.mobiles-location.com
---
Clicking the link above opened up a web page which tries to imitate iCloud, asking for an Apple ID user credentials.
A day afterwards, the following message was sent to both me and my wife's replacement phone:
---
Apple has detected an unauthorized access to your account <my wife's apple ID>
Please verify your account now
map.mobiles-location.com
---
It's a good thing we both turned on the two-factor authentication - but still, apple needs to eliminate such danger in order to prevent hacking stolen devices.
iPhone XS, iOS 12