Hugo Hacker News

Apple’s Double Agent

criticaltinker 2021-08-19 04:01:26 +0000 UTC [ - ]

> [Andrey Shumeyko, also known as YRH04E and JVHResearch online] said he established a relationship with Apple's anti-leak team—officially called Global Security—after he alerted them of a potential phishing campaign against some Apple Store employees in 2017. Then, in mid-2020, he tried to help Apple investigate one of its worst leaks in recent memory, and became a "mole," as he put it.

> Shumeyko has never worked for Apple, [...] but he decided to give Apple information about the iOS 14 leak. He had obtained a copy of the leaked iOS 14 build himself, and said he also learned how the leak went down and wanted to share the information with Apple.

> Last year, Shumeyko sent Apple investigators a PDF titled "The List," essentially a dossier where he shared personal details such as phone numbers, WeChat IDs, and alleged locations of three people who advertised and sold devices on Twitter, as well as a U.S. citizen who collects iPhone prototypes.

> Shumeyko told Motherboard that he is still struggling financially. He is also still on Twitter trying to sell Apple data in an attempt to finally cash out on years of being involved in Apple leaks.

What we have here is a classic case of the age old proverb: "there is no honor among thieves". Shumeyko strikes me as particularly motivated by financial gain with no real allegiance to Apple or the jailbreak/leak community. It's a bit sad that he thought he would make legitimate money from any of this, but I don't feel much pity for him. It was a tough lesson for him, but for everyone else the takeaway should be: always get it in writing. Especially when you're toeing the line of legality and criminal activity.