Sunday, September 07, 2014
As far, you have probably heard about the biggest digital exposure of private and very personal nude photographs of as many as 100 female celebrities including Jenny McCarthy, Kristin Dunst, Mary E Winstead, and Oscar winner Lawrence and Kate Upton, that was surfaced on notorious bulletin-board 4chan, and anonymous image board AnonIB over the weekend.
It was believed that the group of hackers allegedly taken celebrities photos from their Apple iCloud backups after their iCloud accounts were compromised, but users of devices running Google's Android could have been targeted too.
A forum post on anonymous image board AnonIP shows that the group of hackers may have used a cloned Flappy Bird app to steal and collect the naked photos of females from their Android devices and then send them to remote servers.
Experts believe that the group may have been stealing and trading nude and very personal photos of more than 100 female celebrities for more than two years, gathered on the “stolen” forum on image board AnonIB.
The developer of fake Flappy Bird app took advantage of the user's "carelessness" of granting the permissions to Android apps.
The post on a hackers' forum, written in late July this year, was discovered by security consultant Nik Cubrilovic. It detailed how the supposed developer had developed a malware-ridden “clone” of Flappy Bird app for Android devices that would exploit app permissions granted during installation in an effort to steal the photos.
“I am a fucking genious [sic]… Hear me out. I.. modded… the app,” the developer explained in the post. “It now secretly downloads all of the phones pictures to my server when the game is running. Note: this app will only work for android,” he added.