UPDATED 13:11 EDT / JULY 22 2013

NEWS

Apple Admits Breached Dev Center, Key Developer Information May Be At Risk

After Apple’s Developer Center was taken offline on Thursday, the company called it extended site maintenance; but recently, Apple admitted that the Developer Center was hacked, and hackers might have accessed the key developer information. The acclaimed iPhone manufacturer said that its website for third-party developers was hacked by “an intruder”, but customer information was not compromised. The site is currently being examined by Apple. Here’s what Apple said on its website:

“Apple Developer Website Update

Last Thursday, an intruder attempted to secure personal information of our registered developers from our developer website. Sensitive personal information was encrypted and cannot be accessed, however, we have not been able to rule out the possibility that some developers’ names, mailing addresses, and/or email addresses may have been accessed. In the spirit of transparency, we want to inform you of the issue. We took the site down immediately on Thursday and have been working around the clock since then.

In order to prevent a security threat like this from happening again, we’re completely overhauling our developer systems, updating our server software, and rebuilding our entire database. We apologize for the significant inconvenience that our downtime has caused you and we expect to have the developer website up again soon.”

The company said that it would completely overhaul developer systems by updating its server software and rebuilding the entire database, so as to prevent any future security threats.

As of now, Apple has not clarified how many accounts have been breached by the hackers, the security concern cannot be ruled out as there are more than 300,000 registered developers currently working on creating software for the company’s iPhones, iPads, iPods and Mac computers. At least their personal information including name and email addresses would have gone.

“In the modern era, the Internet community is an important tool for companies to interact with developers producing 3rd party connectors,” says Kyt Dotson, DevOps editor. “As a result, a lot of information is stored on dev community sites not just for devs to use to produce products–but about devs themselves. Company information, personal information, and sometimes even source code or API documentation that might spread far and wide, as a result it’s a pretty glaring target for potential bad actors who want to take advantage of a product community.”

Apparently, Turkish ‘security researcher’, Ibrahim Balic, has claimed that he is behind the breach of Apple’s Developer Center. He insists that his intentions were honest and that he wanted to expose a flaw that he’d previously flagged up to Apple, with no response.

“My intention was not attacking. In total I found 13 bugs and reported [them] directly one by one to Apple straight away. Just after my reporting [the] dev center got closed. I have not heard anything from them, and they announced that they got attacked. My aim was to report bugs and collect the datas [sic] for the purpose of seeing how deep I can go with it,” Balic told.

We just hope that this breach is just to uncover the flaws in Apple’s Developer Center site, and absolutely not like the high-profile attacks conducted on PlayStation Network.


Since you’re here …

… We’d like to tell you about our mission and how you can help us fulfill it. SiliconANGLE Media Inc.’s business model is based on the intrinsic value of the content, not advertising. Unlike many online publications, we don’t have a paywall or run banner advertising, because we want to keep our journalism open, without influence or the need to chase traffic.The journalism, reporting and commentary on SiliconANGLE — along with live, unscripted video from our Silicon Valley studio and globe-trotting video teams at theCUBE — take a lot of hard work, time and money. Keeping the quality high requires the support of sponsors who are aligned with our vision of ad-free journalism content.

If you like the reporting, video interviews and other ad-free content here, please take a moment to check out a sample of the video content supported by our sponsors, tweet your support, and keep coming back to SiliconANGLE.