FBI dismisses iPhone ID hack claim

FBI dismisses 'iPhone ID' hack claim
Over to you, AntiSec

The FBI has hit out at reports that it has been hacked by AntiSec and has denied all knowledge of holding millions of Apple IDs.

AntiSec revealed earlier this week that it had found millions of Apple IDs on a laptop belonging to the FBI, explaining it had obtained around 3TB of information from the FBI.

The FBI has released a statement refuting the claims and even posted on its Twitter feed that the allegations were: TOTALLY FALSE (FBI's caps, not ours).

"The FBI is aware of published reports alleging that an FBI laptop was compromised and private data regarding Apple UDIDs was exposed," noted the statement.

"At this time there is no evidence indicating that an FBI laptop was compromised or that the FBI either sought or obtained this data."

Once more unto the breach, dear friends

AntiSec has also responded to the FBI's response and picked apart the statement, saying that 'no evidence' is not the same as not being hacked.

"The fact that the FBI has no 'evidence' of a data breach on one of their notebooks, does not allow the conclusion that it never happened," said AntiSec's statement.

The hacking collective is standing by its claims and has promised to leak more information in the coming days.

On the AnonymousIRC Twitter feed it posted: "Also, before you deny too much: Remember we're sitting on 3TB additional data. We have not even started."

It is also hinting that an app may have been the source of the leak but hasn't revealed anything more than that.

Known Java vulnerability

Security experts Imperva has taken a look at the breach and it reckons there could be weight to the claims.

On its blog, it says about AntiSec's revelations: "The FBI agent that was supposedly breached is real. He's a known recruiter in the FBI focused on getting white hat hack hackers to work for the feds.

The blog continues: "The data base that was breached seems authentic—though only Apple can confirm. However, the structure and format of the data indicates that this is a real breach. It would be hard to fake such data."

It has also posted a breakdown of how AntiSec may have found the data, explaining: "For a while now, there has been a known Java vulnerability CVE-2012-0507, that effects specific versions of Java on all platforms and allows the remote attacker to gain control over its victim."

Via Wired

TOPICS
Marc Chacksfield

Marc Chacksfield is the Editor In Chief, Shortlist.com at DC Thomson. He started out life as a movie writer for numerous (now defunct) magazines and soon found himself online - editing a gaggle of gadget sites, including TechRadar, Digital Camera World and Tom's Guide UK. At Shortlist you'll find him mostly writing about movies and tech, so no change there then.

Latest in Cyber Crime
A person scanning a QR code on a smartphone
Quishing is the new QR code scam you need to watch out for – here's how to stay safe
Ransomware on the rise: how small and medium-sized businesses can achieve cyber resilience during turbulent times
Ransomware on the rise: how small and medium-sized businesses can achieve cyber resilience during turbulent times
Text Phishing Scams
Do not fall for this dangerous Amazon shopping scam
Cyber-security
Safeguarding against next-gen cyber risks
The North Face jacket
Thousands of North Face customers accounts hacked, personal data stolen
Smartphone hacked with data flow in the background
9 signs your phone has been hacked
Latest in News
iPad Air M3
Apple updates iPad Air with powerful M3 chip and pairs it with Pro-level Magic Keyboard
Nvidia RTX 5070 Founders Edition GPU shown against a green and black backdrop
Nvidia RTX 5070 early pricing hints at plenty of GPUs at the MSRP – but I’ll believe it when I see it
US President Donald Trump speaks to the press as he signs an executive order to create a US sovereign wealth fund, in the Oval Office of the White House on February 3, 2025, in Washington, DC.
US set to pause cyber-offensive operations against Russia - but CISA says it won't stop
Guitar Hero Mobile
Activision shares first look at Guitar Hero Mobile and, yeah, it looks like AI slop
Web DDoS attacks see major surge as AI allows more powerful attacks
Pulchra Fellini in Zenless Zone Zero.
Zenless Zone Zero Version 1.6 will finally let you play as a furry gunslinger