back
121 comments
> It appears to be the first time Apple has used the method to catch a source of internal leaks.

Definitely not. One of the infamous examples we know about is that Think Secret was forced to shut down after publishing a planted leak about a FireWire audio interface.

https://www.macobserver.com/tmo/article/apple_subpoenas_mac_...

From your own link:

> Having failed to identify who leaked the information regarding "Asteroid", Apple requested the subpoenas in an effort to find the culprit.

In that case, they used the courts to compel publishers to divulge their source. In this case, Apple’s own methods of planting a false flag among their employees caught the source. This is what the author was referring to.

I thought it was pretty well known in Apple circles this was one of the methods they use. I didn’t know the term for it until now though.
I recall reading years ago that false information was always disseminated through Apple specifically for this purpose, along with many other forms of tracking and that staff knew about it specifically to limit temptation. When the goal is to stop the leak, letting staff know of the activities is more powerful than keeping the programme secret.

In one example for the iPad, Business Insider reported that the device was chained to the desk and photos of the desk’s wood grain were taken to simplify singling out any leaked photos. Obviously they could refer to the wood grain later, with so few prototypes, preshooting photos isn’t needed - however it’s about conveying the message.

A lot of this stuff is theatre to telegraph to staff that they risk the weight of the NDA.

Oh man Think Secret was juicy back in the day, it had awesome leaks.

Good times.

Has a single significant Apple launch not leaked in the last decade? I can't think of any. With the scale of the company and corporate loyalty being what they are these days, it just seems inevitable that many things will leak. Yet Apple persist in a hyper-vigilant program of leak prevention.

There's definitely still huge value in the newsworthiness of the launches. Apple get a lot of free media coverage, and for the most part the press treat the actual launches as news because that final official confirmation matters much more than tenuous leaks.

But I often wonder if the top down focus on secrecy and the famous leak prevention programs are more motivated by the strong desire for focus. One of the challenges of keeping a big company effective is combating the tendency for well-meaning collaboration and suggestion making to turn into sluggish bureaucracy and committees. Secrecy a very powerful tool in optimizing a corporate culture, and reminding everyone that it is definitely not ok to share things has that big benefit too.

IIRC the dynamic island functionality wasn't leaked, albeit the new notch design was. It felts so nice to be properly introduced to new ideas and work.

I'm not surprised that Apple can't contain supplier leaks, they produce these things on such a high scale that tight teams are not an option in production.

However I expect better from Apple when it comes to software leaks as they can have the employees close to themselves.

I definitely dig the leaks but it's much more satisfying to be surprised by a proper presentation. I remember the iPhone 4 situation where the whole device leaked and I was reluctant to believe that this is Apple design because of the poor presentation bu by the tech journalists. Later, after proper introduction and using the device, it become my favourite iPhone design ever. Proper introductions are important, I wish Apple Keynotes weren't spoiled as much.

> Has a single significant Apple launch not leaked in the last decade?

It's not a black and white leak vs no leak situation - there are very clearly degrees of severity at play here.

To use a recent example, sure we all know Apple is working on a VR headset, but there have been (to best of my knowledge) no meaningful leaks of images of the actual hardware or software; these will be a surprise on launch day, and surprises can be news worthy - helpful when trying to sell new things, or slow down the rate at which competitors build imitations.

> and reminding everyone that it is definitely not ok to share things has that big benefit too.

I worked Apple retail, and I've worked in medical, legal and telecom. No other work place was as absolutely hard line about privacy and protecting information as the Apple environment was. And that permeated all parts of the workplace, from Apple's data to customer data. I will never forget how many things were just "fine" to do in the medical places I worked that would have been at a minimum a documentable offense at Apple. Obviously any culture thing is only as good as the people managing your local culture, but even if it never protected another product feature, maintaining that vigilance against leaking data is probably a good overall stance for such a huge tech company.

There are leaks, and then there are leaks. The former is bad for business and the latter is marketing.
I remember the first 64 bit cpu being a surprise. That was a pretty big deal - possibly not sexy enough of a leak for anyone outside the tech world to care.
Swift was a bit under a decade ago. We knew they were going to announce something big just based on how many redacted WWDC sessions there were, but even during the keynote there were arguments over what it was going to be.
AirPods?
> analyst941 had such a source, and was able to reveal numerous details about iOS 17. That includes a promise of significant changes to the Control Center, the detail that Apple Maps Lock Screen directions could get a new look, a new grid-based user interface for working with Lock Screens, revamped UIs for the Wallet and Health apps, and more.

Oh wow, with such incredible upgrades coming along I’m not surprised they’re cracking down on it. /s

Every so often, the hype is worth protecting. The m-series device releases and the fabled VR headset are the big ones. iPhone remains a good phone, but Apple really hasn’t done anything groundbreaking with it for some time.

Nonetheless, it’s their company policy and the sister got caught red-handed, and by such simple means. I don’t know why analyst941 felt that deleting their account 24 hours after posting the thread was necessary for their safety though.

My guess is that the account-deletion thing is them freaking out about (1) Apple's lawyers—which, assuming MacRumors's host has backups, is likely a futile gesture—and (2) random crazy people who will target them for whatever reason.

Although if I were them, I'd be worried most about my sister. Putting your own career on the line for internet fame is one thing; risking someone's else's is some deeply bad shit.

Really foolish to keep posting with details even after the sister was caught. Some people just can't help themselves.
If my sister was caught doing something illegal, the last thing I would do is reveal more details about her inside leaks online (that could be further used against her in court).

It feels like a cautionary tale for would-be leakers inside of Apple.

There's also the possibility that this information is just made up by the leaker in an attempt to look better for a coming lawsuit.

A possibility: analyst941 and the Apple employee are the same person. They leaked for whatever reason. After they were caught/fired, they fabricated this story about analyst941 actually being the sibling (with a real sibling's blessing). The sibling will not be in any trouble, because they didn't sign a confidentiality agreement - so it seems a loving sibling might sign on to play this role.

The ex-employee could face a lawsuit, and the lawsuit will look much better for the ex-employee if they merely told a sibling all these things(who then had loose lips), vs if the ex-employee specifically went to MacRumors message board to leak the info to the general public.

Yes, that post is going to be evidence. It potentially ties the leaker to the sister that was fired.
> According to analyst941’s post, Apple might take legal action against both the former employee and the tipster.

Assuming the tipster is not under any NDA, is there anything Apple could take them to court for?

>Assuming the tipster is not under any NDA, is there anything Apple could take them to court for?

In some jurisdictions (including mine, but I do not know California law) there is the civil tort of Tortious Interference, where Parties A & B have a contract, and Party C improperly pushes/induces B to break their contract with A. A could then have a claim against C. What counts is specific, some sort of financial carrot/stick commonly. The former is obvious, for the latter a classic/textbook example would be if you have a contract to sell 500 foobars to A. Meanwhile C is planning to start selling foobars too, and also has lots of existing business with A that is very valuable to A. So C threatens A, saying they'll stop doing business with them unless they breach their contract with you. There is no explicit bribing or payment there, merely denial of future payment, but that could still be a case for tortious interference.

But it's very possible that there's nothing here actionable (or the tort may not be there in CA), and this is just someone using a very generous "might take legal action". If this goes to court Apple would do discovery and check I assume, but it'd be fact dependent.

Edit: sibling comments mention there is also some specific CA law regarding trade secrets.

Reporting on leaked documents is not a crime. Providing financial, sexual, or other incentives for leaked documents could be a crime. Publishing certain parts of leaked documents (i.e. reporting on a major breach of 1 million social security numbers, by publishing all of the leaked numbers; or reporting the Nintendo breach by posting Nintendo's source code), could be a crime or civil issue on a circumstantial basis.

For groups like Wikileaks, it helps that US government documents and laws, with limited exceptions, are not copyrighted or copyrightable in the US. So when they report a huge NSA scandal and publish those documents, the government can't claim copyright infringement... but they will tear the place apart to find the leaker. And of course, spy on the reporter extremely closely for any possible legal slip-up no matter how small (or, arguably, if they hate the reporter enough, make something up).

Sure, I'm a little rusty, but you could perhaps sue anyone for "tortious interference of contract," I'm guessing all you'd need to show is something like "deliberate and intentional screwing around with someone elses source of money"

Folks below were also discussing criminal, which strikes me as unlikely but not at all impossible.

(Can you tell I'm a non-practicing lawyer?)

This was discussed in the tipster's MacRumors farewell thread [1]. I'm not a lawyer to understand the context of it, but someone quoted:

> California Trade Secrets Act (2022) sections 3426 to 3426.11 of the California Civil Code

> (a) "Improper means" includes theft, bribery, misrepresentation, breach or inducement of a breach of a duty to maintain secrecy, or espionage through electronic or other means. Reverse engineering or independent derivation alone shall not be considered improper means.

> (b) "Misappropriation" means:

> (1) Acquisition of a trade secret of another by a person who knows or has reason to know that the trade secret was acquired by improper means; or(2) Disclosure or use of a trade secret of another without express or implied consent by a person who A) Used improper means to acquire knowledge of the trade secret; or(B) At the time of disclosure or use, knew or had reason to know that his or her knowledge of the trade secret was i) Derived from or through a person who had utilized improper means to acquire it;(ii) Acquired under circumstances giving rise to a duty to maintain its secrecy or limit its use; or(iii) Derived from or through a person who owed a duty to the person seeking relief to maintain its secrecy or limit its use; or(C) Before a material change of his or her position, knew or had reason to know that it was a trade secret and that knowledge of it had been acquired by accident or mistake.

It sounds to me like that would incriminate the tipster as well, if the leaked information counts as a trade secret at least, regardless of whether the former employee knew about it or not.

[1] https://forums.macrumors.com/threads/farewell-message.238918...

From the MacRumors thread posted by n2d4 (thanks for this context!), it sounds like the tipster was the sibling of the Apple employee who leaked the information.

I don't know if this changes the legal situation any, but it has certainly already (assuming the tipster is honest) led to negative consequences for them: their sister lost her job because of them, and is now no longer speaking to them.

The assumption apple employees are not under nda is already false. People working on projects that have classified information are asked to sign NDAs (like in most if not all companies). The article mentions the same.
From the article:

> Apple also requires its employees to sign nondisclosure agreements, which forbid the signees from discussing secret projects with unauthorized people. That includes other Apple employees — and most certainly anyone outside the company.

I remember the rumors of a 2025 release date and thinking that is oddly far into the future. If you were deeply involved in the project you would know that those dates weren't accurate so it must have been someone on the periphery. In that case the number of possible date combinations will be far fewer than the number of people who need to be informed so it seems this must have been a targeted communication to someone Apple suspected was leaking information.
It's incredibly stupid to leak like this, plus it's a real f-you to the people working on the stuff. If I were on a product that got leaked I'd be pissed seeing my unfinished work out there. Looking at this person's past leaks[1] their eagerness for approval is on full display, and it's just a bunch of details that do nothing but diminish the magic.

The only real utility leaking has to people is stuff like 'do I buy now or wait' but that can usually be determined by supply chain status dredged up by rumors sites. Sometimes it's best if we don't treat everything like we have to know it right now like every day is Information Christmas or something.

[1] https://forums.macrumors.com/members/anonymous-a-s.1321969/#...

I don't get why employees leak like this. They know full well that the company does not want to reveal info and the employees are told not to leak too. I don't get what they get by leaking. In this case the girl is not even getting any money. Even if they get money it will never be enough to cover for a 6 figure salary + stock options. Such foolish people in this world throwing hard work away. If you don't believe in secrecy or believe in revealing info for what ever reason, just dont join the company, it's very simple.
These are infamous in gaming. Early PS5 devkits had a unique pattern on their casing. So the first time a photo of one was leaked, Sony knew who had done it. Video games have specific markers on maps to show who's footage it is. Software sometimes have dots in the bar at the top to reflect a unique user in a webstream.

It's basically stenography at the end of the day.

You know what would the make the situation better, write up a melodramatic full admission of guilt and linked himself to his sister.
> Leaks spoil Apple’s surprise “one-last-thing” approach to product unveilings

I remember Steve doing "one last thing" announcements a long time ago, but have they done any in the post-Steve era? I can't remember the last one, TBH.

Hard way to learn that internet likes aren’t everything.
Trust, honesty, secrecy, decency are difficult to find together.

Edit: the sister was most likely in marketing/social

Can anyone recommend a book or resource for an introduction to spy craft? I’m sure there are more approaches like ‘canary traps’ that would be useful mechanisms to understand.
I remember at a job interview at Apple asking some of them about how they saw rumor sites. They told me they do definitely read rumors sites to see what's happening in the company. One interesting point they told me was that sometimes things are so far off that they are incredulous to the rumors. Others are so close to home that they wonder who is leaking. They declined to answer about whether any internal investigations took place.
So while analyst941's sister was an Apple employee who signed an NDA, analyst941 was not? Then what case could Apple possibly have against analyst941?
Guy has genuinely ruined his and his siters's life over some stupid little details about some phone operating system, was it worth it? I really don't understand the people who regular these 10 different apple-centric forums, either readers/posters. Who cares about tiny design changes or a different bevel? Go for a walk, start a family.
> To stop secret info from slipping out, Apple silos its employees, giving them information only on a need-to-know basis.

Annoying internal secrecy, open plan offices, and paying part of your salary in prestige (rather than dollars) are all things that make working at certain companies less attractive to me.

In this day and age, it's just more fun for me to hear what companies are working on than it is to have a "big" "surprise" once a year.

Also, I love that there's drama over a leak that is so boring I can't even be bothered to look at it.

Imagine risking jail and massive fines just to learn details about shitty UI changes.

>my face when

They should go after Max Tech YouTube channel as well for propagation & interacting with the same set of sources
I think I remember reading this trick in a Tom Clancy book, circa 1990. IIRC, Jack Ryan invented it. :)
If they can't even keep their releases a secret, how can I trust them with my data?
Never understood the motivation for leakers. Are their lives that gray?
Did the leaker make any money out of the leaks?
The tone in this comment section is, frankly, baffling. Nobody owes Apple any kind of right to control when or how their products are announced.
Again: the site's cookie selection wouldn't know what GDPR and privacy were if they came up and bit it, but dark patterns are its old friend...