Apple repairs a security gap in iCloud

Security void at iCloud seems to have allowed would-be hackers to repeatedly try different passwords on the service users' accounts, without them being locked as usual, after a number of failed attempts. Thus, in theory, it was possible to access any account after a lot of effort and a strong dose of luck.icloud iCloudAs protothema says, Apple has immediately coped and corrected the security gap.

In the New Year, an iCloud account hacking "tool" was released by someone with the nickname pr0x13. That it was called iDict and essentially automatically tested thousands of passwords against a large list of frequently used words and phrases. Its creator claimed that he could even access Apple's security questions or two-factor authentication process.

The following day @pr0x13 wrote to Twitter that the security gap was corrected and iDict no longer works.

iCloud was a few months ago the target of attacks, with many actors, και τραγουδίστριες να υποστηρίζουν ότι οι λογαριασμοί τους είχαν παραβιαστεί, με αποτέλεσμα τη usually "spicy" photos.

Apple had then argued that leakage incidents were the result of targeted attacks and not of a security vacuum, of course not knowing how many bills were actually violated and how many celebrities exploited the noise created to come back temporarily to the news.

Author information

SecNews

SecNews is a specialized website, which gives the to its visitors to be informed about the latest security news and trends in the IT industry.
SecNews

iGuRu.gr The Best Technology Site in Greecefgns

every publication, directly to your inbox

Join the 2.086 registrants.

Written by Dimitris

Dimitris hates on Mondays .....

Leave a reply

Your email address is not published. Required fields are mentioned with *

Your message will not be published if:
1. Contains insulting, defamatory, racist, offensive or inappropriate comments.
2. Causes harm to minors.
3. It interferes with the privacy and individual and social rights of other users.
4. Advertises products or services or websites.
5. Contains personal information (address, phone, etc.).