Threat Intelligence

AI Voice Scam Targets Stolen iPhone Owners to Bypass Apple's Security Lock

The Hacker News · 26 Aug 2026
Key Takeaway Apple and other legitimate companies will never call you asking for your passcode or 2FA codes, so treat any such request—even from a convincing voice—as a scam and hang up.

Security researchers have uncovered a phishing-as-a-service platform called AnonyMousKIT that helps criminals bypass Apple's Activation Lock feature on stolen iPhones. Rather than relying on traditional phishing emails or texts, the operation rents out AI-powered voice agents that call theft victims directly, pretending to be Apple Support representatives.

During these calls, the AI voice agent asks victims to provide their device passcode or two-factor authentication (2FA) codes, claiming this is needed to help 'recover' or verify their account. In reality, this information allows criminals to strip Activation Lock protections, making stolen devices easier to resell. The platform reportedly operates on a credit-based system, meaning criminals pay per call or per successful scam, and the service is used to run these scam campaigns at scale.

While this particular scam targets people who have already had a device stolen, it highlights a broader and growing trend: criminals using realistic AI-generated voices to impersonate trusted brands like Apple over the phone. This makes it harder for victims to distinguish real support calls from scams, since the AI voices can sound natural and convincing rather than robotic.

Summarised by CISO AI from The Hacker News. We link back to every original so you can read it yourself.