Computing in the real world
SEARCH FOR: IN:
      
Welcome Guest  Register Log in

News 

[Security]
Wednesday 9th July 2008
Apple at fault for major security breach 1:40PM, Wednesday 9th July 2008
Apple has apologised to a Finnish software developer after his Apple ID - including access to his .Mac account - was handed over to another person.

Marko Karppinen attempted to log into the Apple Developer Connection (ADC) earlier this week only to discover that both his password and the email address associated with the account had been changed.

And it all appears to have been the result of an email, sent by someone else to Apple.

"Based on the emails that have appeared in my .Mac mailbox, this was accomplished by sending this classy one-liner to Apple: 'am forget my password of mac,did you give
 
 
ADVERTISEMENT
me password on new email marko.[redacted]@yahoo.com'," Karppinen recounts on his blog, adding, "To which Apple reacted by doing the only reasonable thing - saying Sir, Yes Sir! and handing my account over."

Karppinen immediately contacted Apple, noting that the company had given someone else full access to his personal and credit card details, his Apple ID for online purchases and the contents of his iDisk, email and contacts.

"Frankly, this makes me so angry that I can't see straight," he told Apple. "Did it not occur to you at all that someone at "marko.[redacted]@yahoo.com" was not actually me? For example, because the names didn't match?"

A team lead at ADC contacted Karppinen to apologise for the "mess" and to assure him that this is not how Apple normally operates. He said Apple would examine its logs to find out where and how the Apple ID was used.

Submit to: Digg  |  Slashdot  |  Del.icio.us  |  Technorati

Related News

Top 10 Broadband

150+ broadband packages

Compare 30+ mobile broadband deals

Powered by Top 10 Broadband


Columns

Prolog:

After eight years in a caring relationship, Tim Danton is falling for a desktop once again. › See full Opinion