LEFTEROS / PERSONAL NOTES
iPad user email addresses leaked from AT&T’s website
11 June 2010 / Lefteris Iliadis / SomniusX
Historical text from HellasProject (2009–2014). It is not current advice or a present-day service.
“A group calling themselves Goatse Security exploited a security gap on AT&T’s web server and harvested email addresses of a number of iPad 3G users.”

Reports spoke of at least 114,000 email addresses, including accounts of people at the New York Times, Google, Microsoft, and employees at NASA, the FAA, the FCC, and the US military. The harvest used automated scripts on AT&T’s web servers based on the iPad 3G SIM address (ICC ID). The group did not state what they would do with the addresses; Gawker, which first ran the story, said users might become more exposed to spam or malicious hacking.
Although that article framed the story as another awkward moment for Apple, some specialists argued that exposing ICC IDs was not a serious threat. Meanwhile AT&T issued a statement that the security gap was fixed on Wednesday and that, while they continued investigating, they would notify anyone whose address may have been taken.
Source: MacLife.gr, written by MihalisGR