Our Terms of Service and Privacy Policy have changed.

By continuing to use this site, you are agreeing to the new Privacy Policy and Terms of Service.

AT&T fixes major iPad 3G security hole

By Ben Rooney, staff reporter


NEW YORK (CNNMoney.com) -- AT&T said late Wednesday that it has fixed a security hole that may have allowed hackers to access the e-mail addresses of more than 100,000 iPad 3G owners.

The announcement came shortly after tech and gossip blog Gawker posted an expose of the breach. A hacker group used a vulnerability on AT&T's website to harvest the e-mail addresses iPad buyers provided to activate their devices, which went on sale barely more than a month ago.

The result was a glitzy who's who list of iPad early adopters, which includes major political figures, military officials and top politicians. Rahm Emanuel, the chief of staff for President Obama, was among the iPad users whose e-mail address was exposed, according to Gawker. Hollywood producer Harvey Weinstein and New York City Mayor Michael Bloomberg were also on the hit list.

Without commenting on the vast scope of the alleged hack, AT&T acknowledged taking action to fix a security hole.

The company was informed Monday by a business customer about the "possible exposure" of their iPad ICC IDs, a unique identification number used to link devices with their owners.

"This issue was escalated to the highest levels of the company and was corrected by Tuesday," AT&T (T, Fortune 500) spokesman Mark Siegel said in a prepared statement. "We have essentially turned off the feature that provided the e-mail addresses."

Siegel said e-mail addresses were the only information that could have been exposed as a result of the glitch. He said AT&T is continuing to investigate the problem and will inform all customers who may have been affected.

"At this point, there is no evidence that any other customer information was shared," Siegel said.

An engineer for "Goatse Security," the hacker outfit that discovered the AT&T hole and alerted Gawker about its data harvest, told CNNMoney.com that Gawker's account of the breach is accurate. He declined to comment further.

Apple (AAPL, Fortune 500), which sold more than two million iPads since the device debuted on April 3, did not immediately respond to a request for comment.

CNNMoney.com staff writer David Goldman contributed to this report.  To top of page

Index Last Change % Change
Dow 17,660.71 9.45 0.05%
Nasdaq 4,717.09 -8.55 -0.18%
S&P 500 2,050.63 -0.49 -0.02%
Treasuries 1.75 -0.04 -2.07%
Data as of 11:43pm ET
Company Price Change % Change
Bank of America Corp... 14.05 -0.08 -0.57%
Chesapeake Energy Co... 5.71 0.06 1.06%
Freeport-McMoRan Inc... 11.29 -0.51 -4.32%
Apple Inc 93.24 -0.38 -0.41%
General Electric Co 29.89 -0.18 -0.60%
Data as of 4:01pm ET
Sponsors

Sections

Sumner Redstone, 92, was deposed on videotape Thursday ahead of a trial Friday that will determine his mental competency. It could have implications for Viacom and CBS. More

America has 5.4 million job openings and 8 million people looking for work. The problem is most people hunting for jobs don't have the right skills. More

Gogo has a faster satellite wifi system coming to carriers, and it might be good enough to make people stop complaining. More

Visa says new software will allow consumers to check out with chip cards as fast as swiping a card with magnetic strip. More