Apple 'Deeply Apologetic' Over Account Hacks in China (wsj.com)
Apple has issued an apology over the hacking of some Chinese accounts in phishing scams, almost a week after it emerged that stolen Apple IDs had been used to swipe customer funds. From a report: In its English statement Tuesday, Apple said it found "a small number of our users' accounts" had been accessed through phishing scams. "We are deeply apologetic about the inconvenience caused to our customers by these phishing scams," Apple said in its Chinese statement. The incident came to light last week when Chinese mobile-payment giants Alipay and WeChat Pay said some customers had lost money. The victims of the scams, Apple said Tuesday, hadn't enabled so-called two-factor authentication -- a setting that requires a user to log in with a password and a freshly-generated code to verify their identity.
If Apple provided the ability for two-factor authentication, and customers didn't use it, and they got phished - what exactly is Apple apologizing for? PEBKAC?
"We're sorry that some of you are just too stupid to use very simple security protections that are already in place."
You can be rest assured that it was NOT a "small number".
They just love to use that term. "We've discovered a problem affecting a small percentage of users" (read: the entire device lineup is fucked, there should be a global recall). "A small portion of our user base may have had their accounts compromised" (read: everyone could have been affected, the hackers just weren't brazen enough to grab that many accounts all at once). Etc, etc.
But don't worry, because it's the user's fault they're holding it wrong/using it wrong/not securing it correctly. Clearly not Apple's fault. No siree bob. Not like that wide open root auth hole they left in 10.13, or the fact it's remarkably trivial to circumvent the entire T2 security chip in the newer computers and modify the OS at will (even to a persistent extent, like an EFI boot kit but much, much more difficult to remove). Or the iCloud leak that later got known as The Fappening. Nope, none of this is Apple's fault! They can do no wrong.
that you actually thought our system were secure.
Deeply felt
In China: We are deeply sorry.
Rest of the world: Your holding it wrong.