Apple and Meta Platforms provided customer data such as addresses, phone 
numbers and IP addresses to hackers who posed as law enforcement officials, 
Bloomberg reported 
<https://email-st.seekingalpha.com/click/27206446.33775/aHR0cHM6Ly93d3cuYmxvb21iZXJnLmNvbS9uZXdzL2FydGljbGVzLzIwMjItMDMtMzAvYXBwbGUtbWV0YS1nYXZlLXVzZXItZGF0YS10by1oYWNrZXJzLXdoby1mb3JnZWQtbGVnYWwtcmVxdWVzdHM_c3JuZD10ZWNobm9sb2d5LXZwJnV0bV9zb3VyY2U9c2Vla2luZ19hbHBoYSZ1dG1fY2FtcGFpZ249cnRhLXN0b2NrLW5ld3MmbWVzc2FnZWlkPTI5MDAmbWFpbGluZ2lkPTI3MjA2NDQ2JnNlcmlhbD0yNzIwNjQ0Ni4zMzc3NSZ1dG1fdGVybT0yNzIwNjQ0Ni4zMzc3NSZzb3VyY2U9ZW1haWxfMjkwMA/60ad14cc6e18af39551d9eecB15520bca>.
The news outlet, citing three people familiar with the situation, reported that 
the tech giants gave the information in the middle of last year to a fraudulent 
"emergency data request." These requests generally are accompanied by a search 
warrant or subpoena, but emergency requests do not need court orders, Bloomberg 
added.

Snap was also the recipient of a forged request, but it is not clear if the 
Evan Spiegel-led company complied and responded.

Apple, Snap and Meta Platforms did not immediately respond to a request for 
comment from Seeking Alpha, but Apple pointed Bloomberg to the law enforcement 
guidelines posted on its website 
<https://email-st.seekingalpha.com/click/27206446.33775/aHR0cHM6Ly93d3cuYXBwbGUuY29tL2xlZ2FsL3ByaXZhY3kvbGF3LWVuZm9yY2VtZW50LWd1aWRlbGluZXMtdXMucGRmP3V0bV9zb3VyY2U9c2Vla2luZ19hbHBoYSZ1dG1fY2FtcGFpZ249cnRhLXN0b2NrLW5ld3MmbWVzc2FnZWlkPTI5MDAmbWFpbGluZ2lkPTI3MjA2NDQ2JnNlcmlhbD0yNzIwNjQ0Ni4zMzc3NSZ1dG1fdGVybT0yNzIwNjQ0Ni4zMzc3NSZzb3VyY2U9ZW1haWxfMjkwMA/60ad14cc6e18af39551d9eecB6816185f>.

"If a government or law enforcement agency seeks customer data in response to 
an Emergency Government & Law Enforcement Information Request, a supervisor for 
the government or law enforcement agent who submitted the Emergency Government 
& Law Enforcement Information Request may be contacted and asked to confirm to 
Apple that the emergency request was legitimate," the guideline states.

It's unclear who the hackers were, but some cybersecurity researchers have 
speculated that it could be a group of minors in the U.S. and U.K. and may be 
one of members of the Lapsus$ group that hacked Nvidia 
<https://email-st.seekingalpha.com/click/27206446.33775/aHR0cDovL3NlZWtpbmdhbHBoYS5jb20vbmV3cy8zODA2MTI2LW52aWRpYS1oaXQtYnktcG90ZW50aWFsLWN5YmVyYXR0YWNrLXJlcG9ydD91dG1fc291cmNlPXNlZWtpbmdfYWxwaGEmdXRtX2NhbXBhaWduPXJ0YS1zdG9jay1uZXdzJm1lc3NhZ2VpZD0yOTAwJm1haWxpbmdpZD0yNzIwNjQ0NiZzZXJpYWw9MjcyMDY0NDYuMzM3NzUmdXRtX3Rlcm09MjcyMDY0NDYuMzM3NzUmc291cmNlPWVtYWlsXzI5MDA/60ad14cc6e18af39551d9eecB016825a4>,
 Microsoft 
<https://email-st.seekingalpha.com/click/27206446.33775/aHR0cHM6Ly9zZWVraW5nYWxwaGEuY29tL25ld3MvMzgxNTkxNC1taWNyb3NvZnQtaW50ZXJuYWwtc291cmNlLWNvZGUtcmVwb3J0ZWRseS1sZWFrZWQtYnktaGFja2Vycz91dG1fc291cmNlPXNlZWtpbmdfYWxwaGEmdXRtX2NhbXBhaWduPXJ0YS1zdG9jay1uZXdzJm1lc3NhZ2VpZD0yOTAwJm1haWxpbmdpZD0yNzIwNjQ0NiZzZXJpYWw9MjcyMDY0NDYuMzM3NzUmdXRtX3Rlcm09MjcyMDY0NDYuMzM3NzUmc291cmNlPWVtYWlsXzI5MDA/60ad14cc6e18af39551d9eecB3bfaf2f3>
 and Samsung 
<https://email-st.seekingalpha.com/click/27206446.33775/aHR0cHM6Ly9zZWVraW5nYWxwaGEuY29tL25ld3MvMzgxMDI1Mi1zYW1zdW5nLWNvbmZpcm1zLXNlY3VyaXR5LWJyZWFjaC1tYXktaW5jbHVkZS1xdWFsY29tbS1kYXRhP3V0bV9zb3VyY2U9c2Vla2luZ19hbHBoYSZ1dG1fY2FtcGFpZ249cnRhLXN0b2NrLW5ld3MmbWVzc2FnZWlkPTI5MDAmbWFpbGluZ2lkPTI3MjA2NDQ2JnNlcmlhbD0yNzIwNjQ0Ni4zMzc3NSZ1dG1fdGVybT0yNzIwNjQ0Ni4zMzc3NSZzb3VyY2U9ZW1haWxfMjkwMA/60ad14cc6e18af39551d9eecB344cb48b>
 in recent weeks.

Bloomberg added that the information obtained by the hackers was used to carry 
out harassment campaigns, citing one of the people. The three people also noted 
that the information could have been used to commit financial fraud.

It's likely that the requests were sent via hacked email domains that allowed 
the fraudsters access to law enforcement agencies in multiple countries and 
created the requests using templates.

Bloomberg also reported that Discord, an instant messaging platform, was also 
the recipient of a fraudulent legal request and the company told the news 
outlet it had complied with the request.

On Wednesday, Apple started allowing certain apps, including Netflix and 
Spotify, to allow sign-up links that point outside Apple's App Store. 
<https://email-st.seekingalpha.com/click/27206446.33775/aHR0cHM6Ly9zZWVraW5nYWxwaGEuY29tL25ld3MvMzgxOTE0Ny1hcHBsZS1zdGFydHMtYWxsb3dpbmctc29tZS1hcHBzLXRvLWxpbmstb3V0c2lkZS1hcHAtc3RvcmUtZm9yLXNpZ24tdXA_dXRtX3NvdXJjZT1zZWVraW5nX2FscGhhJnV0bV9jYW1wYWlnbj1ydGEtc3RvY2stbmV3cyZtZXNzYWdlaWQ9MjkwMCZtYWlsaW5naWQ9MjcyMDY0NDYmc2VyaWFsPTI3MjA2NDQ2LjMzNzc1JnV0bV90ZXJtPTI3MjA2NDQ2LjMzNzc1JnNvdXJjZT1lbWFpbF8yOTAw/60ad14cc6e18af39551d9eecB676c4083>

_______________________________________________
nexa mailing list
[email protected]
https://server-nexa.polito.it/cgi-bin/mailman/listinfo/nexa

Reply via email to