Apple Was Told of iCloud Security Flaw 6 Months Ago, Claims Expert

Advertisement
By Ershad Kaleebullah | Updated: 26 September 2014 12:31 IST

In a new twist to the celebrity nude photos leak scandal, which was purportedly due to a critical security flaw in Apple's iCloud and Find My iPhone services - but later clarified by the company to be breaches of individual accounts, The Daily Dot reports that a security expert by the name of Ibrahim Balic had an extended email conversation with an Apple executive in March about a loophole for infiltrating iCloud accounts.

(Also see: Nude Pictures of Jennifer Lawrence, Other Stars Leaked After Alleged iCloud Hack)

Advertisement

In the conversation that happened, Balic supposedly managed to guess the passwords of a few Apple accounts by brute-forcing testing around 20,000 passwords against these accounts. He then immediately contacted Apple to highlight this fatal flaw and ask them to apply an account lockout policy immediately.

A back-and-forth ensued and Apple's security team tried to iron out the weakness but after around a month a decrease in threat level made them stop investigating it any further. In what looks like the final email of the thread, Apple's security liaison eventually said this, "Do you believe that you have a method for accessing an account in a reasonably short amount of time?"

Advertisement

The Daily Dot claims to have had the email conversations reviewed by security experts. It is interesting to note that the same Ibrahim Balic, a Turkish developer living in London, was behind the hack on Apple's developer website last year in June, where he claimed to have the personal information of more than 10,000 registered users.

Apple had earlier accepted that hackers obtained nude photos of Jennifer Lawrence and other female celebrities by pilfering images from individual accounts rather than through a broader attack on the company's services. Later, Apple included two-step verification for protecting iCloud.

We are now wondering if the 'celebgate' leaks could have been avoided had Apple understood the seriousness of the problem as soon as it was allegedly highlighted by Balic. In case you want to protect your iCloud account from theft we have a handy how-to article, which includes details on setting up two-step authentication.

Advertisement

Written with agency inputs

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Marvel's Wolverine Gets Gameplay Trailer at State of Play, Pre-Orders Go Live
  2. Instagram Alerting Users After Meta AI Exploit Enabled Account Takeovers
  3. Apple Reportedly Agrees to Hand Over India-Specific Financial Data to CCI
  4. RTX Spark-Powered Laptops Could Cost a Lot More Than Regular AI PCs
  5. Lumio Launches 55-Inch Variants of Vision 9 (2026), Vision 7 (2026) in India
  6. Samsung Galaxy A27 Reportedly Bags US FCC Certification, May Launch Soon
  7. Xiaomi 18, 18 Pro and 18 Pro Max Specifications Leaked Ahead of Debut
  8. Realme P4R 5G India Launch Date, Design and Key Specifications Revealed
  1. Dashlane Password Manager Reveals Hackers Stole Some Encrypted Vaults Using Brute-Force Attacks
  2. Apple Doubles MacBook Neo Output as Budget Laptop Gains Popularity, Analyst Says
  3. Apple Reportedly Agrees to Hand Over India-Specific Financial Data to CCI in Years-Long Antitrust Case
  4. Apple Confirms macOS 27 Will End Support for Intel Macs Ahead of WWDC 2026
  5. Instagram Begins Warning Users Affected by Meta AI Hack That Enabled Account Takeovers
  6. UK's FCA Warns Premier League Clubs Over Unauthorised Crypto Sponsor Risks
  7. Vivo X500 Pro Max Display and Battery Details Surface Online in Early Leak; Largest Model Said to Feature 6.85-Inch Screen
  8. Google Introduces Fake Call Detection for Android Phones to Curb Call Spoofing Attacks
  9. Google Rolls Out Gemini Thinking Levels Across Platforms With 'Extended' Thinking Mode for All Users
  10. Samsung Galaxy A27 Reportedly Bags US FCC Certification Ahead of Anticipated Launch
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.