Technologist Mag
  • Home
  • Tech News
  • AI
  • Apps
  • Gadgets
  • Gaming
  • Guides
  • Laptops
  • Mobiles
  • Wearables
  • More
    • Web Stories
    • Trending
    • Press Release

Subscribe to Updates

Get the latest tech news and updates directly to your inbox.

What's On

Nothing Phone 3 Price, Launch Timeline Teased by Nothing CEO Carl Pei Ahead of Google I/O 2025

14 May 2025

Review: Minimal Phone

14 May 2025

Samsung Galaxy S25 Edge vs. iPhone 16 Pro Max: Battle of the titans

14 May 2025

Samsung Galaxy Watch and Galaxy Buds 3 Series to Get AI-Powered Gemini Integration Soon

14 May 2025

Apple Unveils Accessibility Nutrition Labels, Magnifier for Mac, Braille Access and More

14 May 2025
Facebook X (Twitter) Instagram
Facebook X (Twitter) Instagram
Technologist Mag
SUBSCRIBE
  • Home
  • Tech News
  • AI
  • Apps
  • Gadgets
  • Gaming
  • Guides
  • Laptops
  • Mobiles
  • Wearables
  • More
    • Web Stories
    • Trending
    • Press Release
Technologist Mag
Home » Cybercriminals Offer Access to ‘Lucid’ Phishing Platform to Target iPhone, Android Phones in 88 Countries
Mobiles

Cybercriminals Offer Access to ‘Lucid’ Phishing Platform to Target iPhone, Android Phones in 88 Countries

By technologistmag.com3 April 20253 Mins Read
Share
Facebook Twitter Reddit Telegram Pinterest Email

Cybercriminals are using massive device farms that comprise iPhone and Android smartphones in order to send phishing messages to users in 88 countries, according to security researchers. The ‘Lucid’ phishing-as-a-service (PhaaS) platform is designed to deliver messages via iMessage and rich communication services (RCS) chats, with links that lead to phishing websites. These messages are capable of evading typical SMS spam filters due to end-to-end encryption (E2EE). The cybercriminals are also selling licences to use the Lucid platform via a Telegram channel.

Lucid Platform Claimed to Deliver Over 100,000 Messages Every Day

Unlike regular SMS, messages are delivered to users via iMessage or RCS on iPhone and Android smartphones, respectively. As these are E2EE messaging services, the messages have a higher delivery rate than SMS phishing messages, according to Prodaft’s report. These messages are also cheaper than SMS, as there are no operator charges.

One of the alleged device farms used to send tests via iMessage
Photo Credit: Prodaft

 

In order to deliver a high volume of messages via iMessage, Lucid uses large iOS device farms that use rotating, temporary Apple IDs. On the other hand, the cybercriminals use “carrier implementation inconsistencies in sender verification” to send RCS messages to unsuspecting users. 

The messages are designed to convince users to click on a phishing link, which leads to one of several phishing websites set up on over 1,000 domains owned by the threat actors. For example, some messages prompt users to complete fake toll payments, in order to avoid fines. On iMessage, recipients are even asked to respond, as links are disabled in new texts from unknown senders.

The ready-to-use phishing websites allow cybercriminals to collect people’s details, including their credit card information. They can then use a validator to verify whether the card details are valid, before using or selling the information.

Lucid is operated as a PhaaS platform by a Chinese group known as XinXin, according to the researchers. Access to the platform is sold on a weekly basis via a Telegram channel. They are believed to be behind other platforms such as Darcula and Lighthouse, which also offer similar PhaaaS functionality.

In order to stay safe from these phishing attacks, users should refrain from clicking on links in messages received from unknown users. When in doubt about the authenticity of a message, users can contact the sender by looking up the official contact details online, or log in to a service that they use and check for pending payments.

Share. Facebook Twitter Pinterest LinkedIn Telegram Reddit Email
Previous ArticleGoogle fixes the vibrating Android 16 bug that was frustrating users
Next Article Netflix TV App Updated With Multilingual Audio Support for All Movies, TV Shows

Related Articles

Nothing Phone 3 Price, Launch Timeline Teased by Nothing CEO Carl Pei Ahead of Google I/O 2025

14 May 2025

Alcatel V3 Ultra’s New Teasers Show Design, Dedicated Display Modes; India Launch Date Leaked

14 May 2025

Nubia Z70S Ultra With Snapdragon 8 Elite SoC, 64-Megapixel Telephoto Camera Goes Global

14 May 2025

CERT-In Warns of Multiple Vulnerabilities Affecting Millions of iOS and Android Devices

14 May 2025

Google Announces Material 3 Expressive With Updated Dynamic Colour Themes for Android

14 May 2025

Huawei Nova 14 Series Launch Date Announced, Confirmed to Include New Ultra Variant

13 May 2025
Stay In Touch
  • Facebook
  • Twitter
  • Pinterest
  • Instagram
  • YouTube
  • Vimeo

Subscribe to Updates

Get the latest tech news and updates directly to your inbox.

Don't Miss

Review: Minimal Phone

By technologistmag.com14 May 2025

Escaping the screen isn’t easy. When I tested the Light Phone III in March—a phone…

Samsung Galaxy S25 Edge vs. iPhone 16 Pro Max: Battle of the titans

14 May 2025

Samsung Galaxy Watch and Galaxy Buds 3 Series to Get AI-Powered Gemini Integration Soon

14 May 2025

Apple Unveils Accessibility Nutrition Labels, Magnifier for Mac, Braille Access and More

14 May 2025

Alcatel V3 Ultra’s New Teasers Show Design, Dedicated Display Modes; India Launch Date Leaked

14 May 2025
Technologist Mag
Facebook X (Twitter) Instagram Pinterest
  • Privacy
  • Terms
  • Advertise
  • Contact
© 2025 Technologist Mag. All Rights Reserved.

Type above and press Enter to search. Press Esc to cancel.