A few days ago a group calling themselves hackappcom posted a proof of concept script on the popular code repository called Github that would allow for a user to attempt to breach iCloud and access a user account. This script would query iCloud services via the “Find My iPhone” API to guess username and password combinations. The problem here was that apparently Apple AAPL +0.87% was not limiting the number of queries. This allowed for attackers to have numerous chances to guess password combinations without the fear of being locked out.