iCloud Privacy Issue: Hacked even with Two-Factor Authentication

hello. i'd like to reach out regarding a privacy issue. i've been using my apple id since 2012 with no issues until now. even with two factor authentication, someone has been able to get an access to my account especially the hidden album which this person is now using to blackmail me. how was this possible? even with ensured security, no notifications regarding an unrecognized login was sent to me. i'm deeply inconvenienced by this.

Posted on Dec 12, 2025 9:53 AM

Reply
8 replies

Dec 12, 2025 11:27 AM in response to bunbun13love

How do you know this? Did someone send you an email saying they had access to your hidden files, and if you didn't pay them cryptocurrency, they were going to send the files to everyone in your address book? If so, that's a scam. They don't have access to your accounts. They don't even know if you have items in a hidden file that you are ashamed of.


Everyone gets these emails eventually. I've gotten them, deleted them, and nothing has ever been sent out that would shock my friends and family.

Dec 12, 2025 5:39 PM in response to bunbun13love

I’m sorry to hear of your frustration. I’m know expert however these scammers are very convincing.

You may of clicked an infected link within an email or hyperlink in text message.

I would of disconnecting anything related to your account, sign out of devices and browsers and change the password.

Regarding the blackmailing. Do you know them ? Or is it just a chancer.

All the best

Dec 12, 2025 6:30 PM in response to TT123B

TT123B wrote:

I’ve got ya 😀 Its crazy how this click bait has become kind of what we accept.
As mentioned in a previous post these free VPN’s are a risk themselves.
what would you all recommend to secure an iOS device ?


Interesting.


Your take-away after reading about false advertising and scams is that the device somehow needs additional protection?


Probably the most common issue for most folks is getting phished, or getting scammed, or — after data breaches, or if specifically targeted — getting spear-phished.


Most of us aren’t worth the sort of mercenary tooling involved with breaches, and too many of the add-on security apps themselves are far too reminiscent of malware with an end-user license agreement; a EULA.


Phishing somebody is easier than breaching recent iOS security on recent hardware, and simply lying to sell some sketchy VPN app is apparently profitable. Same for thr endemic “Apple Pay” text scams, the sextortion scam spam, and other efforts to phish.


Some of the many sorts of scams:


Account security:


Got breached?


Dec 12, 2025 5:50 PM in response to TT123B

TT123B wrote:

I’m sorry to hear of your frustration. I’m know expert however these scammers are very convincing.
You may of clicked an infected link within an email or hyperlink in text message….


Or an advertisement lied.


Advertisements (spam, pop-ups, etc) making false claims are probably the most common issue most people encounter, too.


Common advertising campaigns have been claiming “hacking” or “viruses”, and offering an add-in VPN app as a “solution”. (note: a VPN doesn’t even remotely address the claims made by the advertisers.)


This is why an earlier reply was seeking more information: there might be no issue here, beyond some (false) advertising.



iCloud Privacy Issue: Hacked even with Two-Factor Authentication

Welcome to Apple Support Community
A forum where Apple customers help each other with their products. Get started with your Apple Account.