None
EN
We Hacked Apple for 3 Months: Here’s What We Found
['Full Compromise Of Apple Distinguished Educators Program Via Authentication', 'Authorization Bypass', 'Command Injection In Author S Epublisher']
Blog | Sam Curry
During our engagement, we found a variety of vulnerabilities in core portions of their infrastructure that would've allowed an attacker to fully compromise both customer and employee applications, launch a worm capable of automatically taking over a victim's iCloud account, retrieve source code for internal Apple projects, fully compromise an industrial control warehouse software used by Apple, and take over the sessions of Apple employees with the capability of accessing management tools and sensitive resources.