|
|
|
|
|
by ndomin
4302 days ago
|
|
seems like a bad title, suggests there is some proof iCloud was hacked while the article states it wasn't likely. > While it’s highly unlikely to be a security issue with iCloud, the incident has served to remind us all of the issues around internet security in general. |
|
We already know of one significant security issue with iCloud that was just posted on HN this morning. There was an outside API that allowed to trivially bruteforce logins without any apparent rate-limiting.
It might be hard to convince a judge of that, but for a provider like Apple, this is to me gross negligence. I mean, World of Warcraft, of all things, has more meaningful security measures in place than iCloud apparently. Apart from obviously not allowing to bruteforce passwords, they very stricly geofence any logins and will rather suspend and force the original owner to reactivate an account than allow login from an unknown IP range.