It's a little bit awkward when you're flipping through photos in front of a group and come upon that one sexy pose in skimpy clothing you forgot was on there, but imagine if someone hacked your phone and uploaded all your private photos for the entire world to see. Jennifer Lawrence and several other celebrities don't need to imagine because a flaw in Apple's Find My iPhone service may have allowed hackers to do just that.
Jennifer Lawrence Leaked |
According to various reports, someone posted a Python script on Github for a password brute force proof of concept to Apple's iCloud service. Brute force attacks use a script to continually guess passwords until it finds the correct one, and in this instance, it leveraged a vulnerability in Find My iPhone that allowed for repeated password guesses without locking out the hacker or notifying the user.
Jennifer Lawrence Leaked |