{"id":409357,"date":"2026-09-03T19:00:48","date_gmt":"2026-09-03T19:00:48","guid":{"rendered":"https:\/\/malwaretips.com\/blogs\/?p=409357"},"modified":"2026-09-03T19:00:48","modified_gmt":"2026-09-03T19:00:48","slug":"apple-pay-security-confirmation-scam","status":"publish","type":"post","link":"https:\/\/malwaretips.com\/blogs\/apple-pay-security-confirmation-scam\/","title":{"rendered":"Apple Pay Security Confirmation Scam: Fake $569.90 Charge Text Exposed"},"content":{"rendered":"<p>A text says Apple Pay just blocked a $569.90 charge and needs your security confirmation. The amount is large enough to feel urgent, yet believable enough to make a quick call seem sensible.<\/p><div id=\"mwtad3872373531\" class=\"gas_fallback-ad_309684--placement_406659\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"3957935887\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div>\n<p>The Apple Pay Security Confirmation scam turns that brief moment of alarm into a fake support conversation. The message looks protective, but the route it provides is controlled by the people creating the problem.<\/p>\n<p><img decoding=\"async\" src=\"data:image\/gif;base64,R0lGODlhAQABAAAAACH5BAEKAAEALAAAAAABAAEAAAICTAEAOw==\" alt=\"Reconstructed Apple Pay security confirmation scam text claiming a $569.90 charge\" title=\"\" class=\"lazyload\" data-src=\"https:\/\/malwaretips.com\/blogs\/wp-content\/uploads\/2026\/09\/apple-pay-fake-charge-text.png\"><\/p>\n<div id=\"mwtad3435243351\" class=\"gas_fallback-ad_309746-ad_406044-placement_406660\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"4456629336\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><h2>Overview<\/h2>\n<h3>A fake charge makes the warning feel personal<\/h3>\n<p>The text claims an attempted Apple Pay payment has been placed on hold. One reported version names a $569.90 charge and says the recipient must contact Apple Assistance if the transaction is unfamiliar.<\/p><div id=\"mwtad3334657828\" class=\"gas_fallback-ad_381396-ad_406044-placement_406667\" style=\"margin-top: 50px;margin-bottom: 50px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"1471373341\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div>\n<p>There may be a web address, a telephone number, or both. The link can use a cloud-hosting address containing reassuring words such as apple, payment, help, or security without belonging to Apple.<\/p>\n<h3>The support option belongs to the scammers<\/h3>\n<p>The telephone number does not reach Apple. It connects the recipient with an impersonator who can claim the Apple Account, card, iPhone, or entire identity is under attack.<\/p>\n<p>Apple specifically warns that criminals may claim someone made unauthorized Apple Pay charges. A real brand name and a plausible fraud story do not authenticate an inbound message.<\/p><div id=\"mwtad2339005991\" class=\"gas_fallback-ad_309686-ad_406044-placement_406668\" style=\"margin-top: 50px;margin-right: 10px;margin-bottom: 50px;margin-left: 10px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"6935453015\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div>\n<h3>The conversation can end in account or financial theft<\/h3>\n<p>A fake adviser may request an Apple Account password, a two-factor authentication code, card details, remote access, or a payment. Each request is described as a necessary step for canceling the invented charge.<\/p>\n<p>The operation commonly seeks:<\/p>\n<ul>\n<li>Apple Account email addresses and passwords<\/li>\n<li>Six-digit verification codes sent by the real Apple system<\/li>\n<li>Payment card numbers, security codes, and billing details<\/li>\n<li>Remote viewing or control of a computer or mobile device<\/li>\n<li>Gift cards, cryptocurrency, wire transfers, or bank payments<\/li>\n<li>Government identification and personal information<\/li>\n<li>Access to email used for password recovery<\/li>\n<\/ul>\n<p>Apple Pay is a real service, and an actual unfamiliar transaction deserves attention. The safe response is to leave the text and inspect Wallet, the card issuer, and the Apple Account through channels you open yourself.<\/p><div id=\"mwtad1613577115\" class=\"gas_fallback-ad_381401-ad_406044-placement_406669\" style=\"margin-top: 50px;margin-right: 10px;margin-bottom: 50px;margin-left: 10px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"5315249587\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div>\n<div id=\"mwtad3440037475\" class=\"gas_fallback-ad_309747-ad_406044-placement_406661\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"9589536513\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><h2>What the Fake Apple Pay Message May Say<\/h2>\n<p>A common message begins with \u201cApple Pay Security Confirmation Required.\u201d It says a payment was detected and placed on hold while Apple waits for the account holder to confirm whether it is legitimate.<\/p>\n<p>The text may say that no action is needed if the payment is yours. If it is not, the recipient is told to call an \u201cApple Assistance Line\u201d immediately or open a security page.<\/p>\n<div id=\"mwtad2133323398\" class=\"gas_fallback-ad_381404-ad_406044-placement_406670\" style=\"margin-top: 50px;margin-right: 10px;margin-bottom: 50px;margin-left: 10px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"8735619847\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><p>That split instruction is persuasive because it resembles a fraud alert. It also turns the victim&#8217;s natural denial into the exact action the scammer wants.<\/p>\n<p>Other versions mention an iPhone order, an App Store purchase, an Apple Card charge, a new trusted device, or an iCloud sign-in. The amount, number, and link can change each time the campaign is sent.<\/p>\n<p>\u201cReply STOP\u201d language does not make the notice legitimate. Anyone can add familiar compliance wording to a bulk text, and replying may confirm that the telephone number is active.<\/p>\n<p><img decoding=\"async\" src=\"data:image\/gif;base64,R0lGODlhAQABAAAAACH5BAEKAAEALAAAAAABAAEAAAICTAEAOw==\" alt=\"Reconstructed fake Apple support page requesting account verification for a held payment\" title=\"\" class=\"lazyload\" data-src=\"https:\/\/malwaretips.com\/blogs\/wp-content\/uploads\/2026\/09\/apple-pay-fake-support-page.png\"><\/p>\n<div id=\"mwtad924942789\" class=\"gas_fallback-ad_309748-ad_406044-placement_406662\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"3906789406\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><h2>How the Apple Pay Security Confirmation Scam Works<\/h2>\n<h3>Step 1: A frightening payment alert reaches the phone<\/h3>\n<div id=\"mwtad1840673758\" class=\"mwtadp5 mwtadentity-placement\" style=\"margin-top: 50px;margin-bottom: 50px;\"><script async src=\"https:\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\"\r\n     crossorigin=\"anonymous\"><\/script>\r\n<ins class=\"adsbygoogle\"\r\n     style=\"display:block; text-align:center;\"\r\n     data-ad-layout=\"in-article\"\r\n     data-ad-format=\"fluid\"\r\n     data-ad-client=\"ca-pub-7750719144850257\"\r\n     data-ad-slot=\"8560433799\"><\/ins>\r\n<script>\r\n     (adsbygoogle = window.adsbygoogle || []).push({});\r\n<\/script><\/div><p>Scammers send the message to large lists of numbers. They do not need to know whether every recipient owns an iPhone or uses Apple Pay because the Apple name is familiar to a broad audience.<\/p>\n<p>A randomly chosen amount can still match the recipient&#8217;s circumstances. Someone who recently shopped online may assume the alert relates to that activity.<\/p>\n<h3>Step 2: The text supplies its own verification route<\/h3>\n<p>The message does not encourage the recipient to open Wallet or call the card issuer. It supplies a link or telephone number and labels that route as Apple Support, Security, or Assistance.<\/p>\n<div id=\"mwtad3661114226\" class=\"mwtadp6 mwtadentity-placement\" style=\"margin-top: 50px;margin-bottom: 50px;\"><script async src=\"https:\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\"\r\n     crossorigin=\"anonymous\"><\/script>\r\n<ins class=\"adsbygoogle\"\r\n     style=\"display:block; text-align:center;\"\r\n     data-ad-layout=\"in-article\"\r\n     data-ad-format=\"fluid\"\r\n     data-ad-client=\"ca-pub-7750719144850257\"\r\n     data-ad-slot=\"4034304343\"><\/ins>\r\n<script>\r\n     (adsbygoogle = window.adsbygoogle || []).push({});\r\n<\/script><\/div><p>This is the central switch. The supposed warning and the proposed solution come from the same unverified sender.<\/p>\n<h3>Step 3: A fake support agent confirms the invented emergency<\/h3>\n<p>If the victim calls, the operator may answer with a professional greeting and ask for a case number from the text. Repeating the amount and device details creates the impression that a real support record exists.<\/p>\n<p>The agent may claim several payment attempts are pending or that the Apple Account is connected to a criminal investigation. New details are added whenever the victim hesitates.<\/p>\n<h3>Step 4: A copied page or caller starts identity checks<\/h3>\n<p>The website can copy Apple colors, account fields, and security language. It may request an email address, password, card details, telephone number, or identity document.<\/p>\n<p>A caller can collect the same information gradually. Simple questions come first so a later request for a code or card number feels like another routine checkpoint.<\/p>\n<h3>Step 5: The criminal triggers a real security code<\/h3>\n<p>With an email address or telephone number, the scammer may attempt a real sign-in or password reset. Apple then sends a genuine verification prompt or six-digit code.<\/p>\n<p>The agent calls it a cancellation code, refund token, or account-protection number. Sharing it can authorize the action the criminal initiated rather than canceling anything.<\/p>\n<h3>Step 6: Remote access provides a view of private accounts<\/h3>\n<p>Some operators claim they need to inspect the device for hackers. They direct the victim to install remote-control or screen-sharing software and approve broad permissions.<\/p>\n<p>Once connected, the caller may watch passwords, authentication codes, bank balances, and payment steps. They can also hide the screen while moving money or changing settings.<\/p>\n<h3>Step 7: A payment is framed as protection or reversal<\/h3>\n<p>The victim may be told to buy gift cards, transfer money to a safe account, send cryptocurrency, or approve a payment that will supposedly reverse the $569.90 charge.<\/p>\n<p>Apple does not protect an account by asking a customer to send money elsewhere. Gift card codes and crypto transfers are especially attractive to criminals because recovery is difficult.<\/p>\n<h3>Step 8: Stolen access is reused after the call ends<\/h3>\n<p>An account takeover can expose photos, messages, saved payment details, device backups, and recovery information. The thief may change trusted numbers and lock the owner out.<\/p>\n<p>Personal details can also support later bank, delivery, tax, or recovery scams. A follow-up caller may know enough about the first incident to sound like a genuine investigator.<\/p>\n<div id=\"mwtad1584980851\" class=\"gas_fallback-ad_318930-ad_406044-placement_406663\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"3818335085\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><h2>Why the Scam Text Can Look Convincing<\/h2>\n<p>A short automated message can appear more authentic than a long email. There are fewer words to contain a spelling error, and people are accustomed to receiving transaction alerts on their phones.<\/p>\n<p>Cloud-hosted pages can also use HTTPS. A lock icon shows that the connection is encrypted; it does not show that Apple owns the page or approves its contents.<\/p>\n<p>Caller ID is not reliable proof. A criminal can spoof a known support number or use a number that looks local, while the actual call is handled elsewhere.<\/p>\n<p>The amount does psychological work. A very small charge might be ignored, while an extreme amount might look absurd. A midrange purchase such as $569.90 feels both serious and possible.<\/p>\n<p>The message may arrive when a person is busy, traveling, or waiting for a delivery. The campaign succeeds by getting an immediate reaction before the account is checked independently.<\/p>\n<div id=\"mwtad4173593212\" class=\"gas_fallback-ad_381388-ad_406044-placement_406705\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"3191649120\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><h2>Warning Signs the Apple Pay Alert Is Fake<\/h2>\n<ul>\n<li>The text was unexpected and uses a threat or urgent deadline.<\/li>\n<li>It provides a telephone number as the only way to cancel a charge.<\/li>\n<li>The link uses an unrelated domain, cloud host, or misspelled address.<\/li>\n<li>The caller asks for an Apple Account password or security code.<\/li>\n<li>You are told to install remote-control or screen-sharing software.<\/li>\n<li>The agent requests gift cards, crypto, wires, or a safe-account transfer.<\/li>\n<li>The supposed purchase does not appear in Wallet or with the card issuer.<\/li>\n<li>The caller tells you not to contact Apple, the bank, or family.<\/li>\n<li>The agent becomes impatient when you insist on ending the call.<\/li>\n<li>A copied logo is offered as proof instead of a verifiable account record.<\/li>\n<\/ul>\n<p>Do not rely on grammar alone. A polished text can be fraudulent, and a genuine automatic notice can sometimes be awkward. The destination and requested action are stronger tests.<\/p>\n<div id=\"mwtad4270919253\" class=\"gas_fallback-ad_381392-ad_406044-placement_406664\" style=\"margin-top: 50px;margin-bottom: 50px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"2944237110\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><h2>How to Check an Apple Pay Charge Safely<\/h2>\n<p>Open Wallet from the device rather than through the message. Review recent Apple Pay activity and compare it with the account for the payment card involved.<\/p>\n<p>Some transactions may be pending, grouped, or displayed under a merchant name that differs from the storefront. Contact the card issuer through the number on the physical card when a charge remains unfamiliar.<\/p>\n<p>For Apple purchases, review purchase history through the device&#8217;s normal settings or the official Apple website. Do not sign in through a link sent by an unknown number.<\/p>\n<p>If support is needed, start from the Apple Support app or type Apple&#8217;s support address yourself. Apple advises treating unexpected requests for a password, security code, or money as suspicious.<\/p>\n<p>A real fraud check can survive a disconnected call. If an agent says hanging up will make the loss permanent, that pressure is evidence that the conversation is unsafe.<\/p>\n<div id=\"mwtad3348368587\" class=\"gas_fallback-ad_381392-ad_406044-placement_406665\" style=\"margin-top: 50px;margin-bottom: 50px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"2944237110\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><h2>What Real Apple Support Will Not Need From You<\/h2>\n<p>A support representative does not need your Apple Account password. The password is used by you to authenticate; handing it to another person defeats that separation.<\/p>\n<p>Do not approve a sign-in notification simply because someone on the telephone predicts it will appear. Read the device, location, and action carefully, then reject anything you did not initiate.<\/p>\n<p>Apple also does not require gift cards or a transfer to investigate a purchase. A refund appears through the original payment process, not through card codes read to a caller.<\/p>\n<h2>Company, Address, and Fulfillment Checks<\/h2>\n<h3>The sender name does not establish an Apple connection<\/h3>\n<p>Messages can display Apple, Apple Pay, or a generic security label without passing through an Apple-controlled system. Inspecting the visible name is not enough.<\/p>\n<h3>The website address must belong to the claimed service<\/h3>\n<p>Words placed inside an unrelated domain do not make it official. Open Apple support independently and compare the entire address, not just the first familiar word.<\/p>\n<h3>The support request should match normal account controls<\/h3>\n<p>Apple can help without asking for a password, a complete security code, remote control, or payment to a stranger. Those requests contradict the purpose of the account&#8217;s protections.<\/p>\n<h3>The claimed charge must exist in a real payment record<\/h3>\n<p>A text is not a transaction record. Wallet, purchase history, and the card issuer provide independent evidence; the scammer&#8217;s page provides only a claim.<\/p>\n<h2>What to Do if You Have Fallen Victim to This Scam<\/h2>\n<ol>\n<li><strong>End contact immediately.<\/strong> Hang up, close the website, and stop replying. Do not send another payment to reverse, verify, or recover the first one.<\/li>\n<li><strong>Secure the Apple Account.<\/strong> Change the password through the normal device settings or official site, review trusted devices and numbers, and remove anything unfamiliar.<\/li>\n<li><strong>Contact the card issuer.<\/strong> Use the number on the card, explain what was disclosed, replace the card if necessary, and dispute transactions you did not authorize.<\/li>\n<li><strong>Protect the email account.<\/strong> Change its password, enable strong authentication, review forwarding rules, and sign out unknown sessions because email can reset other accounts.<\/li>\n<li><strong>Disconnect remote access.<\/strong> Take the device offline, remove software installed at the caller&#8217;s direction, revoke its permissions, and do not reuse the session.<\/li>\n<li><strong>Check the device for unwanted software.<\/strong> Run a complete scan with <a href=\"https:\/\/www.malwarebytes.com\/\" target=\"_blank\" rel=\"noopener\">Malwarebytes<\/a> if you downloaded a file, profile, extension, or remote tool during the contact.<\/li>\n<li><strong>Reduce malicious redirects.<\/strong> <a href=\"https:\/\/adguard.com\/\" target=\"_blank\" rel=\"noopener\">AdGuard<\/a> can help block known phishing pages and deceptive advertising, but it cannot undo information already submitted.<\/li>\n<li><strong>Preserve useful evidence.<\/strong> Save screenshots, the sender, telephone number, URL, call time, payment receipt, gift card details, and any remote-access session information.<\/li>\n<li><strong>Report the message.<\/strong> Apple asks users to email a screenshot of suspicious Apple-style texts to reportphishing@apple.com. Forward the text to 7726 and file a fraud report where appropriate.<\/li>\n<li><strong>Prepare for follow-up attempts.<\/strong> Ignore callers promising guaranteed recovery, refunds, or account restoration for another fee. Share no new code, password, or wallet information.<\/li>\n<\/ol>\n<h2>Frequently Asked Questions<\/h2>\n<h3>Does Apple send real security and payment notifications?<\/h3>\n<p>Apple and card issuers can send genuine notices. Verify any unexpected one in Wallet, purchase history, or the card account rather than using the message&#8217;s link or telephone number.<\/p>\n<h3>Is the $569.90 Apple Pay charge real?<\/h3>\n<p>The amount in the scam text is an unverified claim. It is real only if an independent payment record shows it. Do not call the supplied number to find out.<\/p>\n<h3>Can a scammer send a genuine Apple verification code?<\/h3>\n<p>A scammer can trigger the real system by attempting a sign-in or password reset. The genuine code must remain private because it may authorize that hostile action.<\/p>\n<h3>Should I reply STOP to the message?<\/h3>\n<p>Do not interact with a suspicious sender. Block it, preserve a screenshot, forward the text to 7726, and report the impersonation to Apple.<\/p>\n<h3>What if I called but shared no information?<\/h3>\n<p>End the call and review the account independently. If no details, codes, software, or payments were exchanged, the risk is lower, but continued calls should be blocked.<\/p>\n<h3>Can Apple or the bank recover money I sent?<\/h3>\n<p>Recovery depends on the payment method, timing, and destination. Contact the bank or card issuer immediately and provide complete evidence without paying a recovery agent.<\/p>\n<h2>The Bottom Line<\/h2>\n<p>The Apple Pay Security Confirmation scam invents a held charge so the recipient will trust a telephone number or page chosen by the sender. The message&#8217;s protective tone is part of the deception.<\/p>\n<p>Check Wallet and the card account independently. Keep passwords and verification codes private, refuse remote access, and never send money to make an unexpected Apple Pay warning disappear.<\/p>\n<div id=\"mwtad1638290469\" class=\"gas_fallback-ad_176819-ad_406044-placement_406666\" style=\"margin-top: 50px;margin-bottom: 50px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"8386082122\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div>","protected":false},"excerpt":{"rendered":"<p>A text says Apple Pay just blocked a $569.90 charge and needs your security confirmation. The amount is large enough to feel urgent, yet believable enough to make a quick call seem sensible. The Apple &#8230; <\/p>\n<p class=\"read-more-container\"><a title=\"Apple Pay Security Confirmation Scam: Fake $569.90 Charge Text Exposed\" class=\"read-more button\" href=\"https:\/\/malwaretips.com\/blogs\/apple-pay-security-confirmation-scam\/#more-409357\" aria-label=\"Read more about Apple Pay Security Confirmation Scam: Fake $569.90 Charge Text Exposed\">Read more<\/a><\/p>\n","protected":false},"author":51,"featured_media":409347,"comment_status":"open","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[49],"tags":[],"class_list":["post-409357","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-scam-reports","masonry-post","generate-columns","tablet-grid-50","mobile-grid-100","grid-parent","grid-50","resize-featured-image"],"_links":{"self":[{"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/posts\/409357","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/users\/51"}],"replies":[{"embeddable":true,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/comments?post=409357"}],"version-history":[{"count":1,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/posts\/409357\/revisions"}],"predecessor-version":[{"id":409410,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/posts\/409357\/revisions\/409410"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/media\/409347"}],"wp:attachment":[{"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/media?parent=409357"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/categories?post=409357"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/tags?post=409357"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}