Showing posts with label iPad. Show all posts
Showing posts with label iPad. Show all posts

Are Apple developers on the hacker hit list?

Note: this post is condensed from an article written for Digital New Asia.

Apple's developer website for its Mac, iPhone and iPad products was taken offline about two weeks ago; shortly afterwards, Apple released a statement saying that the site had been suffered an intrusion.

Soon after, a grey hat Turkish security researcher, Ibrahim Balic, in London claimed responsibility for the intrusion in a video posted on his YouTube channel, in which he claimed that he had filed bug reports prior to the takedown of the website.

Although there has been no further comments or statements from Apple about Balic's claim, Apple does seem to be taking the occurrence seriously and is currently still working restoring their web services.

Now the issue is — why are developers, particularly iOS developers, being targeted now more than ever? The intrusion on the developer site, though allegedly done with benign intent, brings greater attention to the importance of securing developer accounts, and the potential consequences if such accounts are compromised and misused.

This is in light of an attack earlier this year on the popular iOS Mobile developers' forum iPhoneDevSDK, which successfully garnered victims from the big tech companies, like Apple, Facebook and Twitter and so on.

Tumblr security lapse - iPhone and iPad users update your passwords now!

Tumblr has released a "very important" update for their iPad and iPhone apps following what they describe as a "security lapse".It appears that passwords were being sent over the internet unencrypted, making it easy for anyone with bad intentions and a little technical knowledge to harvest Tumblr users' login details.

The short post by Derek Gottfrid, Tumblr's vp of product, gives very little away but does say that passwords may have been compromised by being "sniffed in transit"

http://nakedsecurity.sophos.com/2013/07/17/tumblr-security-lapse-iphone-and-ipad-users-update-your-passwords-now/
Short post by Derek Gotffrid

AT&T hacker and internet troll 'Weev' appeals 41-month prison sentence

The Electronic Frontier Foundation on Monday filed an appeal seeking to free Andrew "Weev" Auernheimer, the hacker and self-described internet troll who exploited a hole in AT&T's publicly facing website to siphon the personal data of some 114,000 iPad owners.


http://nakedsecurity.sophos.com/2013/07/04/att-hacker-and-internet-troll-weev-appeals-41-month-prison-sentence/
AT&T hacker sentenced
Ultimately, Auernheimer was the catalyst behind AT&T fixing the gaping security hole he climbed through to get that information. He's currently serving a 41-month sentence at the Allenwood Federal Correctional Complex in White Deer, Pennsylvania, in the US.

AT&T hacker sentenced | Naked Security