SecurityTools

AnonyMousKIT PhaaS uses voice AI agents to phish iPhone passcodes

Source: BleepingComputer · Bill Toulas

Intel Summary

A newly identified Phishing-as-a-Service (PhaaS) platform named AnonyMousKIT is using conversational voice AI agents to trick victims into surrendering device passcodes. The automated service specifically targets owners of stolen Apple hardware to obtain unlock codes and bypass Activation Lock protections. By integrating autonomous voice agents into phishing workflows, the platform enables cybercriminals to conduct dynamic, human-like voice social engineering at scale, lowering operational barriers for illicit device monetization.

Why It Matters

The commercialization of autonomous voice AI agents in cybercrime platforms represents an escalation in social engineering efficacy and scale. Automated voice bots can conduct real-time, context-aware conversations that circumvent traditional phishing awareness defenses. Enterprise security leaders and device administrators must reinforce out-of-band verification procedures, educate users on AI-driven voice scams, and deploy robust hardware asset tracking and endpoint management controls.

Part of an ongoing development

Independent reporting

AnonyMousKIT uses voice AI agents to phish iPhone passcodes

A newly identified Phishing-as-a-Service (PhaaS) platform named AnonyMousKIT is using conversational voice AI agents to trick victims into surrendering device passcodes. The automated service specifically targets owners of stolen Apple hardware to obtain unlock codes and bypass Activation Lock protections. Claims are as reported; this summary makes no determination about accuracy or significance.

Confidence
Moderate confidence
Corroboration
Limited corroboration

Organizations & Entities