Saturday, April 17, 2021
  • Who Invented the Personal Computer? “Apple Was Literally Following Us Around”
  • Phishing 101: How It Works & What to Look For
  • Cyberthreat update from Acronis CPOCs: Week of April 12, 2021
  • El futuro de TI según Forrester
  • WeAreDelphix: Meet Javier Barthe

Security Boulevard

The Home of the Security Bloggers Network

Community Chats Webinars Library
  • Home
    • Cybersecurity News
    • Features
    • Industry Spotlight
    • News Releases
  • Security Bloggers Network
    • Latest Posts
    • Contributors
    • Syndicate Your Blog
    • Write for Security Boulevard
  • Webinars
    • Upcoming
    • On-Demand
  • Chat
    • Security Boulevard Chat
    • Marketing InSecurity Podcast
  • Library
  • Related Sites
    • MediaOps Inc.
    • DevOps.com
    • Container Journal
    • Digital Anarchist
    • SweetCode.io
  • Media Kit

  • Analytics
  • AppSec
  • CISO
  • Cloud
  • DevOps
  • GRC
  • Identity
  • Incident Response
  • IoT / ICS
  • Threats / Breaches
  • More
    • Blockchain / Digital Currencies
    • Careers
    • Cyberlaw
    • Mobile
    • Social Engineering
  • Humor
Data Security SBN News Security Bloggers Network Threats & Breaches 

Home » Cybersecurity » Data Security » Australian teen who hacked into Apple and stole 90 GB of files avoids jail

Australian teen who hacked into Apple and stole 90 GB of files avoids jail

by Graham Cluley on September 28, 2018

An Australian teenager who hacked into Apple’s network on multiple occasions over several months and stole sensitive files has been told that he will not be imprisoned.

As Bloomberg reports, the unnamed hacker – who was 16 years old when the security breaches began – exploited a VPN designed for the use of authorized parties to access Apple’s internal systems. With assistance from an accomplice, “he later sent a computer script to the system which created a secure shell tunnel – a method of accessing systems and bypassing firewalls – enabling them to remove data more quickly.”

In all, 90 GB of sensitive data is thought to have been exfiltrated, including internal security policies and authorized login keys.

Unfortunately for the unnamed youth, his activities were spotted by the tech giant. Apple informed the FBI, which in turn informed Australian law enforcement. This led to a police raid at his home last year.

Prosecutors described what investigators found on the youth’s seized computer hardware:

Two Apple laptops were seized and the serial numbers matched the serial numbers of the devices which accessed the internal systems. A mobile phone and hard drive were also seized and the IP address … matched the intrusions into the organisation. The purpose was to connect remotely to the company’s internal systems.

Furthermore, exploration of the laptop’s contents uncovered a folder named “hacky hack hack” containing the stolen files.

If that sounds like something of a childish error, consider that the Melbourne private schoolboy is also said to have bragged about his hack with friends via WhatsApp.

The teenager, who is now 19, was described to be a “fan” of Apple who “dreamed” of working for the company one day and found accessing its internal networks “addictive.”

Apple was at pains to point (Read more...)

*** This is a Security Bloggers Network syndicated blog from The State of Security authored by Graham Cluley. Read the original post at: https://www.tripwire.com/state-of-security/featured/australian-teen-who-hacked-into-apple-and-stole-90-gb-of-files-avoids-jail/

September 28, 2018September 28, 2018 Graham Cluley Apple, Data breach, Featured Articles, IT Security and Data Protection
  • ← Russian Hacker Group APT28 Used UEFI Rootkit on Select Targets
  • French Release Secure OS to Open Source Community →

TechStrong TV – Live

Watch latest episodes and shows

Subscribe to our Newsletters

Get breaking news, free eBooks and upcoming events delivered to your inbox.
  • View Security Boulevard Privacy Policy

Most Read on the Boulevard

Son of Stuxnet? Iran Nuke Site Hacked ‘by Israel’ (Again)
Identity Management Day: Cybercriminals No Longer Hack in, They Log In
Hackers Leak Hacker Data in Swarmshop Breach
YT$AW: FBI Cleans Up Exchange Servers, NSA Tips Microsoft 4 More Bugs
Salesforce DevSecOps: Avoiding Arrested Development
GUEST BLOG: Secure your data for cyber resilience
Mayhem for API ❤️ GitHub: Seamless DevSecOps for your REST APIs
Facebook and Google Account Authentication | Avast
Tradecraft Training Q&A: How to Use the Dark Web for Your Investigations
5 Major Reasons for “Why is Cyber Security Important?”

Upcoming Webinars

Wed 21

Managing Open Policy Agent at Scale

April 21 @ 3:00 pm - 4:00 pm
Thu 22

A New Approach to Secure Web Gateways

April 22 @ 11:00 am - 12:00 pm
Mon 26

The Kubernetes Network (Security) Effect

April 26 @ 9:00 am - 10:00 am
Mon 26

Application Security: Moving at the Speed of DevOps

April 26 @ 1:00 pm - 2:00 pm
Wed 28

Cyber Attacks From the Open Source Perspective

April 28 @ 1:00 pm - 2:00 pm
Thu 29

Hack My Java Application: Demonstrating How Snyk and Red Hat Help Developers Stay Performant and Secure

April 29 @ 11:00 am - 12:00 pm
May 05

Managing Permissions and Entitlements is at the Core of a Zero Trust Model in the Cloud

May 5 @ 3:00 pm - 4:00 pm

More Webinars

Download Free eBook

7 Must-Read eBooks for Security Professionals

Recent Security Boulevard Chats

  • Cloud, DevSecOps and Network Security, All Together?
  • Security-as-Code with Tim Jefferson, Barracuda Networks
  • ASRTM with Rohit Sethi, Security Compass
  • Deception: Art or Science, Ofer Israeli, Illusive Networks
  • Tips to Secure IoT and Connected Systems w/ DigiCert

Industry Spotlight

Three Wishes to Revitalize SIEM and Your SOC
Cybersecurity Data Security Endpoint Industry Spotlight Network Security Security Boulevard (Original) 

Three Wishes to Revitalize SIEM and Your SOC

April 16, 2021 Albert Zhichun Li | Yesterday 0
Breach Clarity Weekly Data Breach Report: Week of April 12
Cybersecurity Data Security Identity & Access Industry Spotlight Security Boulevard (Original) Threats & Breaches 

Breach Clarity Weekly Data Breach Report: Week of April 12

April 14, 2021 Kyle Marchini | 2 days ago 0
Securing Remote Health Care Post-COVID-19
Cloud Security Cybersecurity Data Security Governance, Risk & Compliance Industry Spotlight Mobile Security Security Boulevard (Original) 

Securing Remote Health Care Post-COVID-19

April 14, 2021 Mike Nelson | 3 days ago 0

Top Stories

U.S. Fingers Putin’s Cozy Bear for SolarWinds Attacks
Analytics & Intelligence Application Security Cloud Security Cyberlaw Cybersecurity Data Security Endpoint Featured Governance, Risk & Compliance Incident Response IoT & ICS Security Malware Network Security News Security Boulevard (Original) Spotlight Threat Intelligence Threats & Breaches Vulnerabilities 

U.S. Fingers Putin’s Cozy Bear for SolarWinds Attacks

April 16, 2021 Richi Jennings | Yesterday 0
YT$AW: FBI Cleans Up Exchange Servers, NSA Tips Microsoft 4 More Bugs
Analytics & Intelligence Cloud Security Cyberlaw Cybersecurity Data Security Endpoint Featured Governance, Risk & Compliance Incident Response Malware Network Security News Security Awareness Security Boulevard (Original) Spotlight Threat Intelligence Threats & Breaches Vulnerabilities 

YT$AW: FBI Cleans Up Exchange Servers, NSA Tips Microsoft 4 More Bugs

April 14, 2021 Richi Jennings | 2 days ago 0
Son of Stuxnet? Iran Nuke Site Hacked ‘by Israel’ (Again)
Analytics & Intelligence Application Security AppSec Cyberlaw Cybersecurity Deep Fake and Other Social Engineering Tactics Endpoint Featured Governance, Risk & Compliance Identity & Access Identity and Access Management Incident Response IoT & ICS Security Malware Network Security News Securing the Edge Security Awareness Security Boulevard (Original) Social Engineering Spotlight Threat Intelligence Threats & Breaches Vulnerabilities 

Son of Stuxnet? Iran Nuke Site Hacked ‘by Israel’ (Again)

April 12, 2021 Richi Jennings | 4 days ago 0

Security Humor

via   the comic delivery system monikered   Randall Munroe   resident at   XKCD  !

XKCD ‘Post Vaccine Social Scheduling’

Join the Community

  • Add your blog to Security Bloggers Network
  • Write for Security Boulevard
  • Bloggers Meetup and Awards
  • Ask a Question
  • Email: info@securityboulevard.com

Useful Links

  • About
  • Media Kit
  • Sponsors Info
  • Copyright
  • TOS
  • Privacy Policy
  • DMCA Compliance Statement

Other Mediaops Sites

  • Container Journal
  • DevOps.com
  • DevOps Connect
  • DevOps Institute
Copyright © 2021 MediaOps Inc. All rights reserved.
Our website uses cookies. By continuing to browse the website you are agreeing to our use of cookies. For more information on how we use cookies and how you can disable them, please read our Privacy Policy.