Selected Apple iMessage users hit by DDoS attack, forcing iOS app crash

Selected Apple iMessage users hit by DDoS attack, forcing iOS app crash
iMessage proving vulnerable to attack

A group of iOS developers and hackers are reporting they've become the target of a malicious attack which overwhelms the Apple iMessage application with spam texts.

The attack, which appears to be confined to those directly targeted, sends messages (claiming to be from Anonymous) in such a large volume that the recipient is constantly receiving notifications.

The next level is to send a single 'Zaglo text' so large in size that the iOS iMessage app cannot cope with the load and crashes.

As Apple's iMessage app does not limit how fast texts can be sent, and does not allow users to block senders, there's no mechanism in place to prevent their instant delivery.

Motivation?

This constitues a new kind of DDoS attack, the kind of which we've seen hackers and online activists use to bring down government websites in the past couple of years.

The iMessage pranksters' motivation isn't totally clear at present, but The Next Web reports that the attack originated from a Twitter account "involved in selling UDIDs, provisioning profiles and more that facilitate in the installation of pirated App Store apps which are re-signed and distributed."

The report suggests that the attack was conducted using AppleScript to set up and send the overwhelming number of messages using the OS X iMessage client, something one victim said was extremely easy to do.

iOS developer Paul Grant told The Next Web: "What's happening is a simple flood: Apple doesn't seem to limit how fast messages can be sent, so the attacker is able to send thousands of messages very quickly."

Apple has been notified of the issue, but is yet to comment.

TOPICS
Chris Smith

A technology journalist, writer and videographer of many magazines and websites including T3, Gadget Magazine and TechRadar.com. He specializes in applications for smartphones, tablets and handheld devices, with bylines also at The Guardian, WIRED, Trusted Reviews and Wareable. Chris is also the podcast host for The Liverpool Way. As well as tech and football, Chris is a pop-punk fan and enjoys the art of wrasslin'.

Latest in Cyber Crime
A person scanning a QR code on a smartphone
Quishing is the new QR code scam you need to watch out for – here's how to stay safe
Ransomware on the rise: how small and medium-sized businesses can achieve cyber resilience during turbulent times
Ransomware on the rise: how small and medium-sized businesses can achieve cyber resilience during turbulent times
Text Phishing Scams
Do not fall for this dangerous Amazon shopping scam
Cyber-security
Safeguarding against next-gen cyber risks
The North Face jacket
Thousands of North Face customers accounts hacked, personal data stolen
Smartphone hacked with data flow in the background
9 signs your phone has been hacked
Latest in News
Ray-Ban Meta Smart Glasses
Samsung's rumored smart specs may be launching before the end of 2025
Apple iPhone 16 Review
The latest iPhone 18 leak hints at a major chipset upgrade for all four models
Quordle on a smartphone held in a hand
Quordle hints and answers for Monday, March 24 (game #1155)
NYT Strands homescreen on a mobile phone screen, on a light blue background
NYT Strands hints and answers for Monday, March 24 (game #386)
NYT Connections homescreen on a phone, on a purple background
NYT Connections hints and answers for Monday, March 24 (game #652)
Quordle on a smartphone held in a hand
Quordle hints and answers for Sunday, March 23 (game #1154)