Showing posts with label Apple. Show all posts
Showing posts with label Apple. Show all posts

Monday, 6 August 2012

Apple Allowed Hackers Access To User’s iCloud Account


Is your iCloud account secured by a good password? That’s not going to help you if Apple sidesteps your security and hands hackers access to your account.

Yesterday I posted Mat Honan’s tale of woe. Hackers got into his iCloud account and used that to remote wipe his iPhone, iPad and MacBook before going on to create more mayhem. At the time it was assumed that the hackers had used bruteforcing – trying passwords until they got lucky — but it turns out thatApple gave the hackers access to his iCloud account.


    I know how it was done now. Confirmed with both the hacker and Apple. It wasn’t password related. They got in via Apple tech support and some clever social engineering that let them bypass  security questions.

“Social engineering” is a fancy word for tricking the person on the other end to do what you want by making them believe that they are you.

Nothing can protect you from this kind of targeted attack. You ca have the best password possible, and awesome security questions, but if the hacker can convince the tech support person that they are you, they can walk past all that security.

Scary thought!

People can be tricked, but given the power that access to an iCloud gives someone — access to documents, photos, not to mention the ability to delete devices — I would expect Apple to have tighter controls over how people are allowed to bypass security questions. People do forget their passwords, and they do forget their security questions, but before allowing someone to bypass these safeguards Apple should err on the side of caution, perhaps making the person making the request jump through a number of hoops before giving them access to the account.

This high-profile hack of an iCloud account has highlighted that Apple has a weakness here, and the company needs to tighten up security and come clean about what went wrong here.

Sunday, 29 July 2012

2 Million OS X Mountain Lion Copies Sold in 48 Hours


Apple’s latest Mac platform release, the OS X 10.8 Mountain Lion, has seen great response from users right from the start.

The Cupertino-based company managed to sell two million copies of the new OS X in only 48 hours after the official launch, in line with the success last year’s Lion platform registered.

The new platform release comes with an appealing price tag, namely $19.99, which has certainly contributed to its success.


Moreover, the platform was offered for free to all those who purchased a new Mac machine after June 11th, 2012.

However, it should be noted that Apple hasn’t yet provided official numbers on Mountain Lion sales, but that the info comes from Chitika, which estimates 2.11 million copies of the OS being sold in the first two days of availability.

The new operating system comes with a wide range of enhancements when compared to the OS X Lion release, Apple counting no less than 200 of them.

Download Link From Sofpedia http://mac.softpedia.com/get/System-Utilities/OS-X-Mountain-Lion.shtml

Chitika Insights also notes that there are over 45 percent of Mac users still running OS X 10.6 Snow Leopard, but that all those using 10.6.6 or higher could upgrade their systems to 10.8.

Wednesday, 25 July 2012

Apple appeared at Black Hat Security conference


Apple will give the hacking community a peek under the hood of iOS this week, with the company’s first-ever presentation at the Black Hat security conference.

Bloombergs Jordan Robinson first reported the Apple appearance, which is scheduled for Thursday. Dallas De Atley, manager of Apples platform security team, will give the presentation.


Black Hats website describes the session: Apple designed the iOS platform with security at its core. In this talk, Dallas De Atley … will discuss key security technologies in iOS.

De Atleys appearance, however, would come when iOS security has been increasingly challenged. Earlier this month, a Russian hacker exploited a flaw in the operating system, letting the public make in-app purchases for free. A week before that, the Find and Call app was revealed to be a Trojan horse that uploaded a users contacts and SMS messages to a remote server. And the forthcoming release of iOS 6 is expected to contain numerous security improvements.

Black Hat general manager Trey Ford suggested to Bloomberg that De Atleys appearance is a coup for the conference. Bottom lineno one at Apple speaks without marketing approval, Ford told the news service. Apple will be at Black Hat 2012, and marketing is on board.

References: Link1