We independently review everything we recommend. When you buy through our links, we may earn a commission. Learn more›

iPhone Pre-Order Scam Alert: What Shoppers Need to Know Right Now

Cybercriminals created a fake Apple store targeting iPhone shoppers with an invisible exploit that steals data without user interaction.

smartphone security alert warning
Photo by حامد طه

A sophisticated fraud campaign has emerged targeting shoppers eager to purchase the upcoming iPhone Duo. Security researchers have uncovered a fake Apple storefront designed to look identical to the official site, complete with a bogus $500 voucher offer and convincing product listings. However, this scam operates far more dangerously than typical pre-order fraud, launching invisible attacks against visitors’ devices without requiring any clicks or downloads.

How the Fake Store Works

The counterfeit Apple website mimics the official store’s design down to copyright notices and layout, making it difficult to spot at first glance. Several red flags reveal the deception: incorrect iPhone model dimensions, colors that Apple has never announced, and a countdown timer that mysteriously resets every time you refresh the page. The site presents a pre-order form requesting your contact information and promising exclusive AppleCare+ benefits alongside the $500 discount.

While the form appears legitimate, submitting your details does not actually send anything to an actual server. Instead, the form serves as a distraction while the website launches a zero-click attack operating silently in the background. This hidden code inspects your browser type and attempts to redirect you to Safari, where it deploys the DarkSword exploit chain against older, unpatched iPhone models.

What’s at Risk

fake website fraud detection
Photo by Markus Spiske

If the background attack successfully breaches your device, cybercriminals gain access to sensitive data stored across your smartphone. The malicious payload can harvest passwords saved in your keychain, extract notes from Apple’s Notes app, retrieve your call history and contact lists, access stored photos, and steal cryptocurrency wallet files from applications like MetaMask and Coinbase Wallet. For users who store financial information or digital assets on their devices, this represents a serious financial threat.

The scam campaign deliberately targets people who may still be running older iPhones while shopping for newer models. Many shoppers upgrade infrequently, meaning they could be browsing on devices several years old and running outdated iOS versions. Apple has patched the underlying DarkSword vulnerabilities in recent iOS releases, but anyone using unpatched software remains vulnerable the moment their browser lands on the malicious website.

Protecting Yourself from iPhone Shopping Scams

The most effective defense against this threat is keeping your device fully updated. Always install the latest iOS release as soon as Apple makes it available. Security patches close the exact vulnerabilities that these attacks exploit, rendering the DarkSword exploit chain ineffective against current software versions.

When shopping for new iPhone accessories and devices, navigate directly to Apple’s official website by typing the address into your browser yourself. Never click pre-order links sent through unsolicited text messages, emails, or social media ads. Scammers frequently use sponsored advertisements to drive traffic to fraudulent storefronts, particularly during product launch periods when excitement and urgency run highest.

If you accidentally opened the malicious link before realizing the site was fake, take immediate action. Restart your device to clear any running payload from system memory, then update your operating system to the latest version available. After updating, secure all your important accounts by changing passwords from a clean, uncompromised device. If you use cryptocurrency wallets or financial apps, review transaction histories for suspicious activity and consider transferring assets to new wallets if you suspect compromise.

Why Zero-Click Attacks Are Dangerous

mobile device security protection
Photo by Privecstasy

Traditional pre-order scams typically rely on social engineering, convincing users to enter credit card numbers or personal identification details into deceptive forms. This newer campaign represents a significant escalation in sophistication. Zero-click attacks require no user interaction, meaning you cannot accidentally prevent them simply by being cautious about what you tap or download. The attack initiates automatically when you visit the page, making traditional user awareness less effective as a defense.

This approach makes the scam particularly dangerous for shoppers researching new iPhone models and comparing prices across multiple retailers. Even a single mistaken click on a scam link could potentially compromise your device, regardless of how security-conscious you normally are.

Looking Ahead

As new iPhone models generate media coverage and excitement, expect fraud campaigns to proliferate. Scammers will create increasingly convincing fake storefronts offering exclusive deals or early access to drive traffic. When shopping for compatible accessories, always verify you are on legitimate retail websites and keep your device software current. By staying informed and maintaining basic security practices, you can shop confidently for your next device without falling victim to sophisticated scams.

About the author

Eleanor Garcia
Eleanor Garcia

Eleanor covers smartphones for REMOVU, balancing cameras, battery life, and software support against price. She helps readers find the best value as the field shifts with every release.