{"id":9,"date":"2019-10-20T07:59:34","date_gmt":"2019-10-20T07:59:34","guid":{"rendered":"http:\/\/democontent.codex-themes.com\/sites\/agency-media\/?p=9"},"modified":"2022-11-18T15:11:10","modified_gmt":"2022-11-18T15:11:10","slug":"wormable-apple-icloud-bug-allows-automatic-photo-theft","status":"publish","type":"post","link":"https:\/\/tomcatorange.com\/new\/2019\/10\/20\/wormable-apple-icloud-bug-allows-automatic-photo-theft\/","title":{"rendered":"Wormable Apple iCloud Bug Allows Automatic Photo Theft"},"content":{"rendered":"<p>&nbsp;<\/p>\n<h5 class=\"jsx-4052881089 v2-h1\">Wormable Apple iCloud Bug Allows Automatic Photo Theft<\/h5>\n<p>&nbsp;<\/p>\n<div class=\"c-article__intro\">\n<p>Ethical hackers so far have earned nearly $300K in payouts from the Apple bug-bounty program for discovering 55 bugs, 11 of them critical, during a three-month hack.<\/p>\n<\/div>\n<div class=\"c-article__content js-reading-content\">\n<p>A group of ethical hackers cracked open Apple\u2019s infrastructure and systems and, over the course of three months, discovered 55 vulnerabilities, a number of which would have given attackers complete control over customer and employee applications.<\/p>\n<p>Of note, a critical, wormable iCloud account takeover bug would allow attackers to automatically steal all of a victim\u2019s documents, photos, videos and more.<\/p>\n<\/div>\n<p>The discovery by hackers Sam Curry, Brett Buerhaus, Ben Sadeghipour, Samuel Erb and Tanner Barnes demonstrated key weaknesses in the company\u2019s \u201cmassive\u201d infrastructure while it also earned the team nearly $300,000 to date in rewards for their efforts, Curry wrote in an extensive <a href=\"https:\/\/samcurry.net\/hacking-apple\/\">blog post<\/a> detailing the team\u2019s findings.Article&#8217;s intro is courtesy of Threatpost<\/p>\n<p><a href=\"https:\/\/threatpost.com\/3-month-apple-hack-vulnerabilities-critical\/159988\/\" target=\"_blank\" rel=\"noopener noreferrer\">Continue reading&#8230;<\/a><\/p>\n<p><a href=\"https:\/\/threatpost.com\/3-month-apple-hack-vulnerabilities-critical\/159988\/\" target=\"_blank\" rel=\"noopener noreferrer\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone wp-image-884\" src=\"https:\/\/cybervigilant.co.uk\/wp-content\/uploads\/2019\/10\/threatpost.png\" alt=\"\" width=\"249\" height=\"113\" \/><\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>&nbsp; Wormable Apple iCloud Bug Allows Automatic Photo Theft &nbsp; Ethical hackers so far have earned nearly $300K in payouts from the Apple bug-bounty program for<span class=\"excerpt-hellip\"> [\u2026]<\/span><\/p>\n","protected":false},"author":2,"featured_media":145,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[9],"tags":[],"class_list":["post-9","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cloud_security"],"acf":[],"_links":{"self":[{"href":"https:\/\/tomcatorange.com\/new\/wp-json\/wp\/v2\/posts\/9","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/tomcatorange.com\/new\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/tomcatorange.com\/new\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/tomcatorange.com\/new\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/tomcatorange.com\/new\/wp-json\/wp\/v2\/comments?post=9"}],"version-history":[{"count":3,"href":"https:\/\/tomcatorange.com\/new\/wp-json\/wp\/v2\/posts\/9\/revisions"}],"predecessor-version":[{"id":2392,"href":"https:\/\/tomcatorange.com\/new\/wp-json\/wp\/v2\/posts\/9\/revisions\/2392"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/tomcatorange.com\/new\/wp-json\/wp\/v2\/media\/145"}],"wp:attachment":[{"href":"https:\/\/tomcatorange.com\/new\/wp-json\/wp\/v2\/media?parent=9"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/tomcatorange.com\/new\/wp-json\/wp\/v2\/categories?post=9"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/tomcatorange.com\/new\/wp-json\/wp\/v2\/tags?post=9"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}