Skip to main content

Hackers demand Apple pay up or millions of iCloud accounts will be wiped

New report verifies some iCloud credentials stolen by hacking group targeting Apple

Typing on a MacBook.
Fabian Irsara/Unsplash
A group of hackers is allegedly trying to extort Apple by holding its customers’ data for ransom and threatening to remotely wipe iCloud accounts connected to both iPhones and iPads if those ransoms are not paid.

The group self-identifies as the “Turkish Crime Family,” and it is demanding either $75,000 in Ethereum or Bitcoin or $100,000 in iTunes gift cards, according to a report from Motherboard. The hackers gave Apple an April 7 deadline to meet the demands — or else they will start wiping both phones and iCloud accounts.

But is this all legit? New reports indicate so. The hacking group provided tech publication ZDNet with a sample set of the iCloud credentials, and ZDNet was subsequently able to verify the information. How? Well, it used Apple’s password reset tool to verify 54 accounts belonging to U.K.-based iCloud customers.

It’s important to note that while all 54 accounts were valid, ZDNet was only able to verify the actual passwords of 10 people. As part of the verification process, the reporters reached out to all of the victims, and at least one of them noted that their password was changed around two years ago, so the breach could be at least a few years old. Most of the individuals said that they used the same login credentials on other websites — which supports the concept that the group didn’t hack Apple but rather used information from other breaches.

According to Motherboard, one of the hackers claims to have gained access to 300 million Apple email accounts, including those using @icloud and @me domains. Another hacker in the group claimed that the group had access to 559 million accounts in all.

And the group said it’s been in touch with Apple’s security team. A member of the Turkish Crime Family provided screenshots of alleged emails between the group and Apple engineers, as well as a YouTube video of one of the hackers logging into a stolen account.

But a report from The Next Web pokes holes in the group’s claim. At least some of the credentials the Turkish Crime Family provided to the publication “[weren’t] functional,” the publication reported on Wednesday, March 22.

And Apple told Fortune that its security team found no evidence of an infiltration. “There have not been any breaches in any of Apple’s systems including iCloud and Apple ID. The alleged list of email addresses and passwords appears to have been obtained from previously compromised third-party services.”

In a new statement released Thursday, March 23, the Turkish Crime Family clarified that it collated the collection of iCloud credentials by combing through five years’ worth of compromised databases.

Motherboard notes that the hackers approached multiple media outlets, potentially in an attempt to put pressure on Apple, as hackers sometimes feed information to reporters in order to help extortion efforts.

Apple says it’s working with the authorities to bring the hackers to justice, and it’s likely we haven’t heard the last of this story. We’ll update this article as we hear more.

Article originally published 03-22-2017. Updated on 03-24-2017 by Christian de Looper: Added news that ZDNet verified the information.

Editors' Recommendations

Christian de Looper
Christian’s interest in technology began as a child in Australia, when he stumbled upon a computer at a garage sale that he…
What Apple’s iCloud encryption update really means — and why you should care
Apple advanced data protection.

Ask any tech enthusiast why they prefer Apple's ecosystem, and they will answer "security" as one of the key factors. Is Apple's security fortress really unbreachable? No. There are plenty of hacking incidents to prove it. Zero-day vulnerabilities pop up from time to time, and against sophisticated spyware like Pegasus, even Apple has proved to be clueless.

What Apple offers is a higher standard of protection, which also explains why the company has kept piling up on its ecosystem gatekeeping. For example, Apple doesn't allow sideloading and likely never will. It has its own set of tangible benefits. In 2022, Apple is further fortifying its security infrastructure with a trio of features.

Read more
iCloud might be sending your photos to strangers’ computers
Microsoft has released a new Windows 11 feature that makes the OS photos app compatible with Apple's iClould.

Microsoft's newly announced iCloud for Windows app, which is intended to connect your iCloud to your Photos app on your PC, has already developed a glitch that is sending photos to the wrong users.

Several users have reported instances on the MacRumors Forums where they have received someone else's images when attempting to load their iCloud data onto a Windows device, and similarly had their own images sent elsewhere. Some users also detailed receiving corrupted videos that played back only black screens with scan lines. Users began sharing their issues with the app on November 17 after Microsoft unveiled the feature the Wednesday prior.

Read more
The U.K. wants to break up Google and Apple’s cloud gaming stranglehold
Playing Diablo Immortal on the Asus ROG Phone 5.

The U.K.'s Competition and Market Authority (CMA) is opening an investigation into Apple and Google's dominance of the mobile browser and cloud gaming markets, the body announced today. Both companies could face fines and additional regulation if found guilty of anticompetitive behavior.

The investigation comes as a result of a consultation the body had launched in June, finding that Apple and Google's duopoly on mobile allowed them to control not just operating systems, but app stores and web browsers. The CMA says that both companies controlled 97% of all mobile browsing experiences in the U.K. in 2021 and notes that they could effectively control cloud gaming through browser restrictions. The consultation revealed support from browser vendors and cloud gaming service providers who claim to be limited by the duopoly, with about 86% requesting for an in-depth investigation.

Read more