Last night, I was targeted for a sophisticated phishing attack on my Apple ID.
This was a high effort concentrated attempt at me.
Other founders are being targeted by the same group/attack, so Iโm sharing what happened for visibility.
๐งตย Hereโs how it went down:
Other founder friends of mine have also been targeted by this attack.
Fortunately neither of them fell victim for it, but Iโm sharing to signal boost to other folks in SVโฆ
Stay safe out there!
turned tonightโs sanskrit reading night into sanskrit ocr reading night!
we read a bunch of papers on synthetic data, multimodal architecture, image augmentation, & cross-linguistic generalization to identify the best methods for training a sanskrit ocr model
The attackers made a led high effort focused attack on me, using OSINT data from People Data Labs and caller ID spoofing.
First, around 6:36pm yesterday all of my Apple devices started blowing up with Reset Password notifications.
Because these are Apple system level alerts,
About 15 minutes later, they call me on my number, using Caller ID spoofing of the official Apple Support phone line (1 (800) 275-2273).
They really emphasized this detail to win trust from the victim.
I was obviously still on guard, so I asked them to validate a ton of
Thankfully I was tipped off that they used my data from People Data Labs in real time to validate a ton of information.
Despite correctly stating all of my data, the phishers thought my name was Anthony S.
๐ฉ๐ฉ๐ฉ๐ฉ๐ฉ๐ฉ
The reason I caught it is because, Iโve queried myself on
Finally the last thing they asked for was an OTP that explicitly says โDonโt share it with anyoneโ.
Hitting approve in the first reset notification spam attack OR sharing this code wouldโve pwned me.