Skip to main content

Apple's Own Data Leak: Ex-Employees Still Accessing Secrets via iCloud

Apple's legal battle with OpenAI has taken an unexpected turn, revealing a data management flaw right in Apple's own backyard. According to U.S. tech media, some former Apple employees were able to access confidential documents—including product release plans—through their personal iCloud accounts even after leaving the company. This discovery adds a new technical dimension to the lawsuit, but it also exposes a gap in Apple's internal policies.

The root of the problem lies in Apple's long-standing practice of encouraging employees to link their personal Apple IDs with company-issued iCloud spaces. The company provides 2TB of iCloud storage and allows it to be combined with existing personal plans. Since iPhones support only one primary Apple ID for full iCloud access, many employees ended up storing both work and personal files on the same device and account.

Apple isn't completely unguarded. In the late 2010s, it introduced a "Apple Work" folder to manage work files. However, internal information outside this folder could still mix with personal data such as photos and continue to sync after employees left. In other words, the wall that should have prevented former employees from accessing company secrets had a gap in its account structure—when a person left, the company's confidential information remained in the account, waiting to be accessed at any time.

This lawsuit against outsiders has ironically exposed Apple's own data governance weaknesses to the world. It raises important questions about how companies manage data access when employees depart, and whether current policies are sufficient to protect sensitive information.

Key Points

  • Former Apple employees could access confidential documents via personal iCloud after leaving.
  • Apple's policy of linking personal and company iCloud accounts created a security gap.
  • The "Apple Work" folder was meant to manage work files but didn't cover all data.
  • The lawsuit against OpenAI highlights Apple's internal data management vulnerabilities.
  • This incident underscores the need for robust offboarding processes and data access controls.