Apple repairs a security gap in iCloud

Security void at iCloud seems to have allowed would-be hackers to repeatedly try different passwords on the service users' accounts, without them being locked as usual, after a number of failed attempts. Thus, in theory, it was possible to access any account after a lot of effort and a strong dose of luck.icloud iCloudAs protothema says, Apple has immediately coped and corrected the security gap.

On New Year's Day someone with the nickname pr0x13 released a "tool" of iCloud accounts. That it was called iDict and essentially automatically tested thousands of passwords against a large list of frequently used words and phrases. Its creator claimed that he could even access Apple's security questions or two-factor authentication process.

The following day @pr0x13 wrote to Twitter that the security gap was corrected and iDict no longer works.

iCloud was a few months ago the target of attacks, with many actors, and female singers claiming that their accounts had been hacked, resulting in the leakage of usually "spicy" photos.

Apple had then argued that leakage incidents were the result of targeted attacks and not of a security vacuum, of course not knowing how many bills were actually violated and how many celebrities exploited the noise created to come back temporarily to the news.

Author information

SecNews

SecNews

SecNews is a specialized website, which gives the opportunity to its visitors to be informed about the latest security news and in the IT industry.
SecNews

iGuRu.gr The Best Technology Site in Greecefgns

every publication, directly to your inbox

Join the 2.082 registrants.

Written by Dimitris

Dimitris hates on Mondays .....

Leave a reply

Your email address is not published. Required fields are mentioned with *

Your message will not be published if:
1. Contains insulting, defamatory, racist, offensive or inappropriate comments.
2. Causes harm to minors.
3. It interferes with the privacy and individual and social rights of other users.
4. Advertises products or services or websites.
5. Contains personal information (address, phone, etc.).