Tim Cook: Apple to Add Security Alerts for iCloud Users, Broaden Two-Factor Authentication

icloud_icon_blueApple will add security alerts for iCloud users, broaden two-factor authentication and make a more aggressive effort to alert users about protecting their accounts, Apple CEO Tim Cook told the Wall Street Journal in his first interview since the recent hacking incident involving celebrities' iCloud accounts.

To make such leaks less likely, Mr. Cook said Apple will alert users via email and push notifications when someone tries to change an account password, restore iCloud data to a new device, or when a device logs into an account for the first time. Until now, users got an email when someone tried to change a password or log in for the first time from an unknown Apple device; there were no notifications for or restoring iCloud data.

Cook said the new notifications will begin in two weeks and will allow users to take action on potential hacking immediately, allowing them to either change the password to retake the account or alerting Apple's security team. Cook echoed Apple's previous press release on the hackings, stressing that the best prevention for future incidents are more human than technological.

"When I step back from this terrible scenario that happened and say what more could we have done, I think about the awareness piece," he said. "I think we have a responsibility to ratchet that up. That's not really an engineering thing."

Apple will also broaden use of its two-factor authentication system, allowing it to also cover access to iCloud accounts from mobile devices like iPad and iPhone. Cook said the majority of Apple's users don't use two-factor authentication, so the company is planning on aggressively getting its users to turn on the feature. Cook also mentioned that had the celebrities been using two-factor verification, the hackers would not have been able to guess their security questions.

Apple has previously explored expanding two-factor authentication to some iCloud services, but an official expansion of the feature had not yet been introduced.

Top Rated Comments

(View all)
Avatar
79 months ago

They should have thought this ahead before the damage is already done.
This type of poor management of sensitive data reminds me of Microsoft, ie; Damage control policy, let the bad things happen then look for ways to prevent them from happening again.


Yea and they should have thought about smoking being bad before millions of people died from it. What more do you want? They already have 2-step verification. The more alerts the better.
Score: 36 Votes (Like | Disagree)
Avatar
79 months ago
Sounds like a typical case of users using weak passwords (which most users tend to do) and hackers using common words to guess them. Amazing that with all the attempted hacking and identity theft and such going around that people still refuse to use complex passwords and security features. Especially celebrities.
Score: 29 Votes (Like | Disagree)
Avatar
79 months ago

Glad that Tim Cook himself is speaking up and Apple is actually showing responsibility by making changes to security. Old Apple under Steve Jobs would stonewall for as long as possible, hoping that the story would go away.


Tim Cook is a fantastic CEO this way. He has done a great job at saying "hey, we screwed up" when they have (and even if they haven't), and saying "hey, we agree, things could be better and we're going to make sure they are."
Score: 21 Votes (Like | Disagree)
Avatar
79 months ago
They should have thought this ahead before the damage is already done.
This type of poor management of sensitive data reminds me of Microsoft, ie; Damage control policy, let the bad things happen then look for ways to prevent them from happening again.
Score: 17 Votes (Like | Disagree)
Avatar
79 months ago

So when the so called hacker is already restoring all the data to a phone or a forensic program all we get is an e-mail telling us "hey all your dumb selfies are being downloaded by an unknown person"?


Not if you enable 2-factor authentication. Then they will not be able to change your password, so they won't be able to get at your iCloud data.

Also, as the article said, Apple is also going to expand 2-factor authentication so, presumably, even if you know someone's password, you STILL won't be able to restore/slurp their iCloud backups without also having access to one of their trusted devices.

Most importantly, he points out that most of their customers CHOOSE not to use 2-factor authentication. (Which is THE CUSTOMER'S FAULT, not Apple's.) And they are going to start harassing customers to smarten up and use it.

There is nothing more Apple can do than that.
Score: 16 Votes (Like | Disagree)
Avatar
79 months ago
They need to halt the restore until you authorize the action either with trusted device or secure backup key... Notification after the fact, is of questionable value...
Score: 14 Votes (Like | Disagree)

Top Stories

Leaker: 'iPhone 12 mini' and iPhone 12 Storage Capacities Start at 64GB, Pro Models at 128GB

Tuesday September 29, 2020 2:31 am PDT by
Rumors suggest Apple's iPhone 12 launch event will be held on October 13, with the more affordable 5.4 and 6.1-inch devices set to ship out ahead of the more expensive 6.1-inch and 6.7-inch Pro devices, and this morning hit-and-miss leaker Jon Prosser has further committed to that date by providing alleged details on Apple's first shipment of finalized iPhone 12 units. Prosser claims the...

Hands-On With iOS 14.2's New Shazam Music Recognition Toggle in Control Center

Monday September 28, 2020 2:35 pm PDT by
Shortly after launching iOS 14, Apple introduced an upcoming iOS 14.2 update, which is now available to developers and public beta testers ahead of a public release that could come at some point in October. Subscribe to the MacRumors YouTube channel for more videos. The iOS 14.2 update mainly focuses on the Control Center, introducing a new Music Recognition toggle that deepens the Shazam...

iPhone 12 'Pro Max' Model to Sport Unique High-End Features

Wednesday September 30, 2020 2:01 am PDT by
The upcoming "iPhone 12 Pro Max" is anticipated to have a number of unique high-end features not found on any other iPhone, such as its screen size, LiDAR scanner, faster 5G, and potentially a higher display refresh rate. The iPhone 12 Pro Max is also expected to be the largest ever iPhone, with a 6.7-inch display. Previously, the largest iPhones have been 6.5-inches in the iPhone XS Max and ...

DigiTimes: 12.9-inch Mini-LED iPad Pro Arriving Early 2021, Mini-LED MacBook Coming Later

Tuesday September 29, 2020 4:18 am PDT by
Apple will launch a 12.9-inch mini LED-backlit iPad Pro in early 2021 and a mini LED-backlit MacBook in the second-half of next year, according to DigiTimes. The Taiwan-based industry publication claims Epistar will supply the over-10,000 mini LEDs used in each iPad Pro tablet. Meanwhile, Apple is expected to recruit Osram Opto as another supplier of mini LEDs for use in a new "high-end"...

iOS 14.2 Suggests Apple Won't Include EarPods in the Box With iPhone 12

Tuesday September 29, 2020 2:19 pm PDT by
Rumors have suggested that Apple's iPhone 12 models will not include power adapters or EarPods in the box, and a minor code tweak in iOS 14.2 seemingly confirms Apple's plan to sell the new devices without EarPods. In iOS 14 and earlier versions of iOS, there's a mention of reducing exposure to RF energy by using the "supplied headphones," which is the same wording that Apple has used for...

iPhone 12 Production Lines at Foxconn's Zhengzhou Factory in China Running '24 Hours a Day'

Tuesday September 29, 2020 3:38 am PDT by
Apple contract manufacturer Foxconn is running its massive Zhengzhou factory in China 24 hours a day to produce the new iPhone 12, according to Chinese media reports. Apple's main iPhone manufacturer in China is said to be cancelling workers' holidays and introducing mandatory overtime with additional bonuses for longer-serving staff, according to information garnered from employees,...

iPhone 12 May Launch Earlier Than Usual in South Korea

Monday September 28, 2020 5:24 am PDT by
The upcoming iPhone 12 lineup may launch earlier than usual in South Korea, reports The Korea Herald. South Korean telecoms firms speaking to The Korea Herald have said that the iPhone 12 lineup will launch ahead of its usual schedule. Normally, the release of new iPhones in South Korea comes about one month after launch in the United States. Last year, the iPhone 11 arrived in South Korea ...

iOS 14.2 Beta 2 Adds New Emoji Characters like Ninja, Pinata, Bubble Tea, Polar Bear and More

Tuesday September 29, 2020 11:22 am PDT by
The second beta of iOS 14.2 introduces the new Emoji 13 characters that Apple previewed earlier this year as part of World Emoji Day. New emoji options include ninja, people hugging, black cat, bison, fly, polar bear, blueberries, fondue, bubble tea, and more, with a list below. Faces - Smiling Face with Tear, Disguised Face People - Ninja, Person in Tuxedo, Woman in Tuxedo, Person...

Epic Games Unlikely to Win Injunction in Ongoing Fortnite Battle With Apple, Jury Trial Possible

Monday September 28, 2020 1:14 pm PDT by
The ongoing legal dispute between Apple and Epic Games continued on today, with a preliminary injunction hearing taking place this morning. We're still waiting to hear the judge's official ruling, but it looks like Epic is not going to be granted an injunction to allow Fortnite back into the App Store as the case unfolds. Many of the arguments that lawyers for Apple and Epic Games made were...

Apple Releases Ninth Beta of macOS Big Sur to Developers

Tuesday September 29, 2020 10:07 am PDT by
Apple today seeded the Ninth beta of an upcoming macOS Big Sur update to developers for testing purposes, a week after releasing the eighth beta and more than two months after the new update was unveiled at the Worldwide Developers Conference. The macOS Big Sur beta can be downloaded through the Apple Developer Center and once the appropriate profile is installed, subsequent betas will be...