Don't miss the latest stories
Advertise Newsletter
Network
  • The Creative Finder
  • The Bazaar
  • Deals
  • Status Is Down
Community
  • Sign up / Log in
  • Discussion Forums
  • Calendar of Events
NEW

Follow

Share this

Apple
Crime
Cybersecurity
macOS
Technology
UI/UX
  • macOS
  • Technology
  • UI/UX
MENU
  • Advertise with us
  • Submit tip/feedback
  • Work with us
  • Subscribe to newsletter
  • Subscribe to RSS
Advertise here
Advertisement

Apple Thanks Fraudster Who Cheated It Of $2.5M Through Fake Orders

By Mikelle Leow, 08 Feb 2024

Subscribe to newsletter
Like us on Facebook

Photo 106817408 © Ulf Wittrock | Dreamstime.com


Trillion-dollar Apple found itself victim of a scheme by a San Francisco man, which cost the tech giant over US$2.5 million in gift cards and electronics. Despite his fraudulent actions, the culprit was thanked by the company for his “assistance.”


Noah Roskin-Frazee, a security researcher at ZeroClicks Lab, and his accomplice managed to manipulate Apple’s internal order system to ship products for free by altering the price details of the orders.


Roskin-Frazee gained unauthorized access to an Apple employee account by exploiting a flaw in a password reset tool. This breach allowed him to manipulate the Toolbox system, which Apple employees use to manage orders. By placing orders on hold—yet still editable—Roskin-Frazee altered the financial details to zero out the cost of the products, essentially tricking Apple into shipping items for free.


The duo’s grand plan involved more than two dozen fraudulent orders, aiming to pilfer over US$3 million worth of products and services from Apple.

Advertisement
Advertisement


They then sold these ill-gotten gains, including about US$2.5 million in gift cards and products, at a premium to unsuspecting third parties, all while using fake identities to cover their tracks.

 

The crimes are said to have started in December 2018 and went on until March 2019. However, Roskin-Frazee was arrested only in January 2024.


Despite the gravity of his actions, which include charges of wire fraud, mail fraud, and conspiracy to commit computer fraud, among others, Apple publicly recognized Roskin-Frazee in a January 22 support document for identifying several bugs in macOS Sonoma, including an accessibility issue and a critical Wi-Fi vulnerability, two weeks after his arrest.


“We would like to acknowledge Noah Roskin-Frazee and Prof. J. (ZeroClicks.ai Lab) for their assistance,” Apple detailed. The nature of Roskin-Frazee’s “assistance” to Apple remains vague. Though, per 404 Media, he had reported security issues to the company in the past.


Still, Roskin-Frazee faces serious charges, including wire fraud and conspiracy to commit computer fraud, which could land him in jail for over 20 years if convicted.

 

 


[via Business Insider, ExtremeTech, MacRumors, 404 Media, cover photo 106817408 © Ulf Wittrock | Dreamstime.com]

   To discuss this topic, please click here.
Receive interesting stories like this one in your inbox
Advertise here

More related news

Advertise here
Also check out these recent news
Web Design
Link to news page

When Your Website Goes Down, This Is the Page Customers Meet Instead

2027
Link to news page

2027 Already Has A Color Of The Year And It’s Beginning On ‘Grounded’ Territory

IKEA
Link to news page

IKEA & Xbox Press Play On Furniture & Storage Inspired By The Iconic Controller

Fashion
Link to news page

Vogue Presents ‘United Flags of Fashion’ With Top Designers For All 50 States

Coca-Cola
Link to news page

Coca-Cola Pours Fresh Life Into Its Iconic Branding With Worldwide Redesign