this post was submitted on 21 Apr 2025
1 points (60.0% liked)

Hacker News

2283 readers
538 users here now

Posts from the RSS Feed of HackerNews.

The feed sometimes contains ads and posts that have been removed by the mod team at HN.

founded 11 months ago
MODERATORS
top 2 comments
sorted by: hot top controversial new old
[–] rowdyrockets@lemm.ee 3 points 3 months ago* (last edited 3 months ago)

What I don’t understand and this article never mentions (which is either disingenuous or poor journalism) is how these hackers gained access to the Apple accounts.

The phone passcode/PIN and Apple account passwords are separate. If someone were to glean your PIN (as implied by the article), that does not give them access to your Apple account. It may give them access to your phone and almost everything on it, then further bad security practices may lead to them accessing the Apple account.

So these people either also got phished on top, or they had their Apple account password insecurely stored on their phone.

I’m not saying Apple couldn’t do more to help these people but having a platform to recover accounts with identity verification is also a vector of attack.

At what point is this just a failure of personal responsibility? The thief is to blame first and foremost, but Apple can’t force you to be educated on and make sound security practices.

[–] blakenong@lemmings.world 2 points 3 months ago

What’s indefensible is Apple holding on to data that they don’t own,

Umm, actually…