Friday, January 31, 2025
HomeCyber Security NewsBug in Apple Store Allowed more than 500 iPhones For Just 0.03...

Bug in Apple Store Allowed more than 500 iPhones For Just 0.03 USD

Published on

SIEM as a Service

Follow Us on Google News

A Taiwanese IT engineer named Chang Chi-yuan uncovered a bug in the Apple’s payment system that allowed him to buy more than 500 iPhones for a Taiwanese dollar which is equivalent to 0.03 USD.

He posted screenshots on Facebook indicating that he successfully paid a Taiwanese dollar for 500 iPhone 8 Plus 256 GB and for two Phone XS Max 512 GB which worth 540,354.47 USD.

500 iPhones

The Apple iPhone 8 Plus was launched in September 2017, it is powered by the hexa-core processor and comes with a display resolution of 1080 pixels by 1920 pixels.

Anyhow once the transaction was accepted Chang Chi-yuan managed to cancel the purchase, Change already purchased iPhones cheaper than the original cost in 2016, he says the bug is similar to the one and it was not yet fixed. reported Taiwannews.

Chang gets attention in 2013 when he deleted a series of Facebook posts by Facebook founder Mark Zuckerberg to highlight a bug he found, after being ignored by tech support.

Few months before a new vulnerability “iOS Trustjacking” identified discovered in the iOS device that allows an attacker to control the Vulnerable device remotely and perform various malicious activities. Another researcher proved that the iPhones and iPads4/6 digits PIN’s can be bypassed with a brute force attack.

Gurubaran
Gurubaran
Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Latest articles

Authorities Seized 39 Websites that Selling Hacking Tools to Launch Cyber Attacks

Authorities have seized 39 websites allegedly used to sell hacking tools and fraud-enabling software.The...

Yeti Forensic Platform Vulnerability Allows Attackers to Execute Remote Code

A critical security flaw has been identified in the popular Yeti Forensic Intelligence platform,...

Cisco Webex Chat Vulnerabilities Expose Organization Chat Histories to Attackers

A major cybersecurity vulnerability in Cisco Webex Chat (previously known as IMI Chat) has...

VMware Aria Operations Vulnerabilities Allow Attackers to Perform Admin-Level Actions

VMware has released a critical security advisory, VMSA-2025-0003, addressing multiple vulnerabilities in VMware Aria Operations...

API Security Webinar

Free Webinar - DevSecOps Hacks

By embedding security into your CI/CD workflows, you can shift left, streamline your DevSecOps processes, and release secure applications faster—all while saving time and resources.

In this webinar, join Phani Deepak Akella ( VP of Marketing ) and Karthik Krishnamoorthy (CTO), Indusface as they explores best practices for integrating application security into your CI/CD workflows using tools like Jenkins and Jira.

Discussion points

Automate security scans as part of the CI/CD pipeline.
Get real-time, actionable insights into vulnerabilities.
Prioritize and track fixes directly in Jira, enhancing collaboration.
Reduce risks and costs by addressing vulnerabilities pre-production.

More like this

Authorities Seized 39 Websites that Selling Hacking Tools to Launch Cyber Attacks

Authorities have seized 39 websites allegedly used to sell hacking tools and fraud-enabling software.The...

Yeti Forensic Platform Vulnerability Allows Attackers to Execute Remote Code

A critical security flaw has been identified in the popular Yeti Forensic Intelligence platform,...

Cisco Webex Chat Vulnerabilities Expose Organization Chat Histories to Attackers

A major cybersecurity vulnerability in Cisco Webex Chat (previously known as IMI Chat) has...