iCloud or Mailbox.org - one was hacked

I woke this morning to an Apple login notification this morning from NYC (and I live far away from there). I’m now changing passwords, email accounts and all of that fun stuff this morning. I’m trying to figure out if iCloud was breached, or my mailbox.org email account is shit and I need to delete it. I haven’t had a problem like this in years! I’m so very careful.

Any insight would be greatly appreciated.

If iCloud was breached at large, we’d know. That would be a bigger deal. It could just be your particular account that someone may be trying for.

Unless you’re a person actively being targeted, I’d say some data breach where your info is available may be being used to get into accounts.

For now, change your passwords and enable 2FA.

2 Likes

I need human help. ToughBird is a bot, no?

What exactly was the notification you received? You can generate iCloud MFA messages without knowing the password. Attackers commonly do this and then call you spoofing an Apple Support phone number to try and gain access under the guise of helping protect your account. All the communications appear legitimate since the MFA message is and the phone number is spoofed to a real Apple Support number, but it might actually be that no one ever got access to anything.

I still recommend rotating credentials, etc. to be safe.

It was an apple request to allow login from a device in NYC. I said no. I’ve been changing credentials and passwords every since.

Not a bot. Real person. Also, you should reply to the comment. I don’t get notified otherwise.

oh ok, someone on another thread sorta kinda marked you as a bot. So, I was dismissive of your comment (and purposely did not reply to you). My apologies.

https://appleinsider.com/articles/26/01/26/infostealer-malware-database-exposes-millions-of-icloud-and-email-passwords