Skip to main content

Apple admits its developer site was hacked, says some data may have been stolen

apple developer siteWhen Apple’s developer site went down on Thursday, the company put up a short notice saying that maintenance work was taking place. However, after 24 hours, the site was still offline, leading some to believe that it was more than just a bit of routine tinkering taking place. And they were right.

Three days after the site went down, and with developers becoming increasingly concerned about the reasons for the outage, Apple sent out an email explaining that, in fact, the site had suffered a security breach.

The message (below) – also posted on the Member Center webpage where developers usually log in – said “an intruder” had entered the site last week in an attempt to steal personal data from registered developers. While Apple was certain in the belief that sensitive personal information of registered developers had not been accessed, it said it could not “rule out the possibility that some developers’ names, mailing addresses, and/or email addresses may have been accessed.”

The tech giant said that to prevent a similar breach happening again, it was working to overhaul its developer systems, update its server software, and rebuild its database.

The site, which provides third-party software developers with app-related resources, information and downloads, was still down late Sunday evening, with no indication given as to when it might be back online.

Speaking to AllThingsD about the incident, Apple spokesman Tom Neumayr said that while he wasn’t prepared to go into detail about the flaws in the old system or the work being done to correct the issue, he wanted to make clear that no information belonging to customers was stolen.

Meanwhile, in another development Sunday evening, security researcher Ibrahim Balic claimed on TechCrunch that on Thursday he reported to Apple a number of security weaknesses he’d found on the developer site, adding that he had been able to access personal details of a number of users. Hours later the Cupertino company took it offline.

Balic, who insists his work had no malicious intent, believes his findings may be the reason the site was taken down, although Apple is yet to contact him about his bug reports.

Below is Apple’s full message to developers:

Last Thursday, an intruder attempted to secure personal information of our registered developers from our developer website. Sensitive personal information was encrypted and cannot be accessed, however, we have not been able to rule out the possibility that some developers’ names, mailing addresses, and/or email addresses may have been accessed. In the spirit of transparency, we want to inform you of the issue. We took the site down immediately on Thursday and have been working around the clock since then.

In order to prevent a security threat like this from happening again, we’re completely overhauling our developer systems, updating our server software, and rebuilding our entire database. We apologize for the significant inconvenience that our downtime has caused you and we expect to have the developer website up again soon.

If your program membership was set to expire during this period, it has been extended and your app will remain on the App Store. If you have any other concerns about your account, please contact us.

Thank you for your patience.

Topics
Trevor Mogg
Contributing Editor
Not so many moons ago, Trevor moved from one tea-loving island nation that drives on the left (Britain) to another (Japan)…
How to enable picture-in-picture for YouTube on your Mac
Macbook Air

If you want to have a bit of music playing in the background or want to have your favorite YouTube video running in the corner of your screen, then the picture-in-picture YouTube feature needs to be on your radar. This allows you to turn your YouTube videos into a tiny pop-up window that can be moved and repositioned around your screen.

Mac users have several ways to activate the feature, including support on both Safari and Google Chrome. There's also a nifty Chrome extension that simplifies the task to a single button press. Here's a look at how to enable picture-in-picture for YouTube on your Mac.

Read more
How to change your Gmail password
pilot testing drivers licenses internet rolls two us states password

Changing your Gmail password is incredibly important for your online security. If you're anything like the average user, your Gmail account is linked to dozens of other organizations and programs – and if your account gets hacked, there's no telling what sort of damage can be done.

Because of this, it's crucial to change your Gmail password at regular intervals. Google makes this a rather painless process, and it should take no more than a few seconds from start to finish.

Read more
Best Buy deals: Save on laptops, TVs, appliances, and more
best buy shuts down insignia line smart home products store 2 768x768

Best Buy is always a great retailer to turn to if you’re looking for some savings. There are almost always Best Buy deals taking place on TVs, appliances, and devices we use to navigate the digital world. In fact, right now at Best Buy you can find some of the best TV deals, best laptop deals, and best phone deals that can be shopped, and we haven’t even mentioned the deals on tablets and home audio equipment currently taking place at Best Buy. We’ve rounded up all of the best Best Buy deals you can shop right now and categorized them for your convenience below, so read onward for some great opportunities to save.
Best Buy TV deals

There may be no better place to purchase one of the best TVs than Best Buy. There is almost always some huge savings to find on TVs at Best Buy, and that’s certainly the case right now. You’ll find deals top TV brands like Sony, Samsung, and LG, and more budget-friendly brands like TCL and Hisense are in play, too.

Read more