盗刷者走免密支付“后门” 大量用户“中招”

Core Points - Recent reports indicate a surge in Apple ID theft incidents, with users losing amounts ranging from hundreds to thousands of yuan, leading to a significant increase in customer complaints [1][4][5] - The methods employed by fraudsters have evolved, moving away from traditional phishing links to more sophisticated tactics that disguise themselves as legitimate e-commerce sellers [2][5][7] - Many victims were lured into providing their Apple ID and passwords under the pretense of needing to activate low-cost services or products, resulting in unauthorized transactions [3][4][6] Summary by Sections Incident Overview - Users on platforms like Xiaohongshu and Douyin have reported their Apple IDs being compromised, with losses totaling over 4,140 yuan in some cases [1][4] - Affected individuals have formed groups, with membership exceeding 200 within days, indicating a widespread issue [1][4] Evolution of Fraud Techniques - Unlike previous incidents in 2018, current scams are more discreet, utilizing e-commerce platforms to gain user trust [2][5][7] - Fraudsters often request verification codes under false pretenses, exploiting the lack of clear communication from Apple regarding the purpose of these codes [4][7] User Vulnerability - Many victims reported that they were not prompted for additional security measures, such as password input or facial recognition, during unauthorized transactions [4][8] - The reliance on third-party payment tools linked to Apple IDs has created vulnerabilities, as these tools often allow for automatic payments without user consent [7][8] Consumer Protection and Responsibility - The China Consumers Association has noted a significant increase in complaints related to Apple ID theft, with over 3,700 complaints recorded on the "Black Cat" complaint platform [4][8] - Legal experts suggest that both merchants and third-party payment companies may bear responsibility for losses incurred due to fraudulent activities, although victims often face challenges in seeking redress [9][10] Recommendations for Users - Apple representatives emphasize the importance of not sharing account passwords and suggest immediate action if unauthorized transactions are detected [11][12] - Users are advised to regularly monitor their account activity and to be cautious of suspicious links that request personal information [12][13]