Group Behind ATandT Data Leak Responds to Controversy

Group Behind ATandT Data Leak Responds to Controversy

Written By
Brian Prince
Brian Prince
Jun 11, 2010
2 minute read
eWeek content and product recommendations are editorially independent. We may make money when you click on links to our partners. Learn More

The group that gained access to 114,000 e-mail addresses belonging to Apple iPad 3G owners has taken to the blogosphere to defend itself, while the FBI has announced that it is investigating the incident.

Goatse Security revealed June 9 that it had obtained the e-mail addresses using a script that exploited a feature on the AT&T Website. Among the addresses revealed by the leak were those of New York City Mayor Michael Bloomberg and numerous military personnel and prominent corporate executives.

In response, FBI spokesperson Lindsay Godwin confirmed in an e-mail to eWEEK that the agency was “aware of these possible computer intrusions and has opened an investigation to address the potential cyber-threat.”

The situation has touched off a debate about responsible disclosure, with AT&T stating that Goatse Security never contacted it with the findings. In a blog post June 10, Goatse Security responded to the controversy about its methods by stating that the timeline of events “speaks for itself.”

The group’s post said, “The Goatse Security analyst responsible for the discovery personally verified this hole was closed Tuesday and no longer a threat to the public before we went to Ryan Tate at Gawker with the data set and attack details. Ryan Tate was the only one to receive our data set, and what results from it he published were redacted to prevent the compromise of those involved.”

The post continued, “All data was gathered from a public Web server with no password,” meaning it was “accessible by anyone on the Internet.” Therefore, “There was no breach, intrusion or penetration,” the group argued. “We did not contact AT&T directly, but we made sure that someone else tipped them off and waited for them to patch” before sharing the information with Gawker.

“This disclosure needed to be made,” the group wrote. “iPad 3G users had the right to know that their e-mail addresses were potentially public knowledge so they could take steps to mitigate the issue (like changing their e-mail address).”

Since the iPad’s launch, Apple has reportedly sold more than 2 million of the devices.

eWeek Logo

eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site's focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

Property of TechnologyAdvice. © 2026 TechnologyAdvice. All Rights Reserved

Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.