Bullish

Former Apple Staff Retain Access to Confidential Files via Personal iCloud Accounts

2026-08-04 12:55

Departed employees continue receiving updates for internal documents stored on personal iCloud, exposing gaps in offboarding security protocols despite permission revocations.

Woofun AI reports that Apple’s policy of allowing staff to use personal Apple IDs for work creates persistent data access risks. Although internal permissions are revoked upon departure, files stored on personal iCloud, iMessage, and unmanaged folders remain accessible and continue to receive update notifications. Several former employees confirmed they could still access internal documents years after leaving, denying any intent to retain data.

The vulnerability surfaced during litigation against OpenAI, where Apple accused two ex-employees of stealing unpublished product details and supply chain information. OpenAI denied the allegations. Apple clarified that the lawsuit targets intentional trade secret theft rather than the inadvertent retention of files on personal devices.

WOOFUN AI

Impact Assessment · Quick Read

This incident highlights significant challenges in securing data within hybrid work environments that rely on personal devices. The persistence of access via personal iCloud accounts suggests that standard permission revocation may be insufficient for comprehensive data loss prevention. For enterprise security sectors, this underscores the growing demand for robust endpoint management solutions that can effectively isolate corporate data from personal cloud ecosystems.
Generated by WOOFUN AI · For reference only, not investment advice

Comments

Me
Replying to @User
0/800

No comments yet.

Notifications

Sign in to view messages
View all messagesManage subscriptions