NZ Herald
  • Home
  • Latest news
  • Herald NOW
  • Video
  • New Zealand
  • Sport
  • World
  • Business
  • Entertainment
  • Podcasts
  • Quizzes
  • Opinion
  • Lifestyle
  • Travel
  • Viva
  • Weather

Subscriptions

  • Herald Premium
  • Viva Premium
  • The Listener
  • BusinessDesk

Sections

  • Latest news
  • New Zealand
    • All New Zealand
    • Crime
    • Politics
    • Education
    • Open Justice
    • Scam Update
  • Herald NOW
  • On The Up
  • World
    • All World
    • Australia
    • Asia
    • UK
    • United States
    • Middle East
    • Europe
    • Pacific
  • Business
    • All Business
    • MarketsSharesCurrencyCommoditiesStock TakesCrypto
    • Markets with Madison
    • Media Insider
    • Business analysis
    • Personal financeKiwiSaverInterest ratesTaxInvestment
    • EconomyInflationGDPOfficial cash rateEmployment
    • Small business
    • Business reportsMood of the BoardroomProject AucklandSustainable business and financeCapital markets reportAgribusiness reportInfrastructure reportDynamic business
    • Deloitte Top 200 Awards
    • CompaniesAged CareAgribusinessAirlinesBanking and financeConstructionEnergyFreight and logisticsHealthcareManufacturingMedia and MarketingRetailTelecommunicationsTourism
  • Opinion
    • All Opinion
    • Analysis
    • Editorials
    • Business analysis
    • Premium opinion
    • Letters to the editor
  • Politics
  • Sport
    • All Sport
    • OlympicsParalympics
    • RugbySuper RugbyNPCAll BlacksBlack FernsRugby sevensSchool rugby
    • CricketBlack CapsWhite Ferns
    • Racing
    • NetballSilver Ferns
    • LeagueWarriorsNRL
    • FootballWellington PhoenixAuckland FCAll WhitesFootball FernsEnglish Premier League
    • GolfNZ Open
    • MotorsportFormula 1
    • Boxing
    • UFC
    • BasketballNBABreakersTall BlacksTall Ferns
    • Tennis
    • Cycling
    • Athletics
    • SailingAmerica's CupSailGP
    • Rowing
  • Lifestyle
    • All Lifestyle
    • Viva - Food, fashion & beauty
    • Society Insider
    • Royals
    • Sex & relationships
    • Food & drinkRecipesRecipe collectionsRestaurant reviewsRestaurant bookings
    • Health & wellbeing
    • Fashion & beauty
    • Pets & animals
    • The Selection - Shop the trendsShop fashionShop beautyShop entertainmentShop giftsShop home & living
    • Milford's Investing Place
  • Entertainment
    • All Entertainment
    • TV
    • MoviesMovie reviews
    • MusicMusic reviews
    • BooksBook reviews
    • Culture
    • ReviewsBook reviewsMovie reviewsMusic reviewsRestaurant reviews
  • Travel
    • All Travel
    • News
    • New ZealandNorthlandAucklandWellingtonCanterburyOtago / QueenstownNelson-TasmanBest NZ beaches
    • International travelAustraliaPacific IslandsEuropeUKUSAAfricaAsia
    • Rail holidays
    • Cruise holidays
    • Ski holidays
    • Luxury travel
    • Adventure travel
  • Kāhu Māori news
  • Environment
    • All Environment
    • Our Green Future
  • Talanoa Pacific news
  • Property
    • All Property
    • Property Insider
    • Interest rates tracker
    • Residential property listings
    • Commercial property listings
  • Health
  • Technology
    • All Technology
    • AI
    • Social media
  • Rural
    • All Rural
    • Dairy farming
    • Sheep & beef farming
    • Horticulture
    • Animal health
    • Rural business
    • Rural life
    • Rural technology
    • Opinion
    • Audio & podcasts
  • Weather forecasts
    • All Weather forecasts
    • Kaitaia
    • Whangārei
    • Dargaville
    • Auckland
    • Thames
    • Tauranga
    • Hamilton
    • Whakatāne
    • Rotorua
    • Tokoroa
    • Te Kuiti
    • Taumaranui
    • Taupō
    • Gisborne
    • New Plymouth
    • Napier
    • Hastings
    • Dannevirke
    • Whanganui
    • Palmerston North
    • Levin
    • Paraparaumu
    • Masterton
    • Wellington
    • Motueka
    • Nelson
    • Blenheim
    • Westport
    • Reefton
    • Kaikōura
    • Greymouth
    • Hokitika
    • Christchurch
    • Ashburton
    • Timaru
    • Wānaka
    • Oamaru
    • Queenstown
    • Dunedin
    • Gore
    • Invercargill
  • Meet the journalists
  • Promotions & competitions
  • OneRoof property listings
  • Driven car news

Puzzles & Quizzes

  • Puzzles
    • All Puzzles
    • Sudoku
    • Code Cracker
    • Crosswords
    • Cryptic crossword
    • Wordsearch
  • Quizzes
    • All Quizzes
    • Morning quiz
    • Afternoon quiz
    • Sports quiz

Regions

  • Northland
    • All Northland
    • Far North
    • Kaitaia
    • Kerikeri
    • Kaikohe
    • Bay of Islands
    • Whangarei
    • Dargaville
    • Kaipara
    • Mangawhai
  • Auckland
  • Waikato
    • All Waikato
    • Hamilton
    • Coromandel & Hauraki
    • Matamata & Piako
    • Cambridge
    • Te Awamutu
    • Tokoroa & South Waikato
    • Taupō & Tūrangi
  • Bay of Plenty
    • All Bay of Plenty
    • Katikati
    • Tauranga
    • Mount Maunganui
    • Pāpāmoa
    • Te Puke
    • Whakatāne
  • Rotorua
  • Hawke's Bay
    • All Hawke's Bay
    • Napier
    • Hastings
    • Havelock North
    • Central Hawke's Bay
    • Wairoa
  • Taranaki
    • All Taranaki
    • Stratford
    • New Plymouth
    • Hāwera
  • Manawatū - Whanganui
    • All Manawatū - Whanganui
    • Whanganui
    • Palmerston North
    • Manawatū
    • Tararua
    • Horowhenua
  • Wellington
    • All Wellington
    • Kapiti
    • Wairarapa
    • Upper Hutt
    • Lower Hutt
  • Nelson & Tasman
    • All Nelson & Tasman
    • Motueka
    • Nelson
    • Tasman
  • Marlborough
  • West Coast
  • Canterbury
    • All Canterbury
    • Kaikōura
    • Christchurch
    • Ashburton
    • Timaru
  • Otago
    • All Otago
    • Oamaru
    • Dunedin
    • Balclutha
    • Alexandra
    • Queenstown
    • Wanaka
  • Southland
    • All Southland
    • Invercargill
    • Gore
    • Stewart Island
  • Gisborne

Media

  • Video
    • All Video
    • NZ news video
    • Herald NOW
    • Business news video
    • Politics news video
    • Sport video
    • World news video
    • Lifestyle video
    • Entertainment video
    • Travel video
    • Markets with Madison
    • Kea Kids news
  • Podcasts
    • All Podcasts
    • The Front Page
    • On the Tiles
    • Ask me Anything
    • The Little Things
  • Cartoons
  • Photo galleries
  • Today's Paper - E-editions
  • Photo sales
  • Classifieds

NZME Network

  • Advertise with NZME
  • OneRoof
  • Driven Car Guide
  • BusinessDesk
  • Newstalk ZB
  • Sunlive
  • ZM
  • The Hits
  • Coast
  • Radio Hauraki
  • The Alternative Commentary Collective
  • Gold
  • Flava
  • iHeart Radio
  • Hokonui
  • Radio Wanaka
  • iHeartCountry New Zealand
  • Restaurant Hub
  • NZME Events

SubscribeSign In
Advertisement
Advertise with NZME.
Home / Entertainment

The shockingly simple way the nude photos of 'Celebgate' were stolen

Washington Post
16 Mar, 2016 11:02 PM5 mins to read

Subscribe to listen

Access to Herald Premium articles require a Premium subscription. Subscribe now to listen.
Already a subscriber?  Sign in here

Listening to articles is free for open-access content—explore other articles or learn more about text-to-speech.
‌
Save

    Share this article

Jennifer Lawrence was one of the celebrities affected by the hacking. Photo / Getty Images

Jennifer Lawrence was one of the celebrities affected by the hacking. Photo / Getty Images

The man expected to plead guilty to stealing private, nude photographs of celebrities used an email phishing scheme to access more than a hundred personal accounts. After a ton of speculation about how one of the biggest celebrity hacks in recent memory happened, it appears that the answer is relatively simple.

Ryan Collins, a 36-year-old Pennsylvania man, was charged with a computer hacking felony Tuesday for his part in the theft of hundreds of nude photos of female celebrities in 2014, which were then posted online in an event known as "Celebgate".

Based on what we know from the plea agreement and prosecutors, it appears that one major part of Celebgate is much less elaborate than what some 4chan users claimed at the time: that many of the photos were stolen through a clever exploitation of a previously unknown iCloud security flaw - a claim that Apple had denied.

READ MORE
• First conviction in celebrity hacking case

Advertisement
Advertise with NZME.
Advertisement
Advertise with NZME.

Instead, Collins used a method of gaining access to password-protected accounts that can victimize pretty much anyone. Phishing schemes come in a lot of different flavors, but all follow the same basic outline: Users are tricked into giving out sensitive information by malicious email accounts or websites that appear legitimate. Spear phishing, which appears to be what happened here, involves targeting specific users by impersonating businesses or individuals they might already know.

Although the information these emails request -- usernames and passwords, personal data, financial information -- are things that a legitimate company would never ask its users to provide in an email, the scammers are hoping that if their target believes they can trust the source of the request, they might be more likely to comply.

Kate Upton was one of those targeted in the celebrity hacking case. Photo / Getty Images
Kate Upton was one of those targeted in the celebrity hacking case. Photo / Getty Images

Phishing attempts like the one now connected to Celebgate are more or less a constant threat for anyone on the Internet. Even if you've never actually taken a nude selfie using a digital device, there's probably something else stored in your digital life that you'd rather not share with the whole world -- and there's someone out there who would like to access it.

According to court filings, Collins stole photos, videos and sometimes entire iPhone backups from at least 50 iCloud accounts and 72 Gmail accounts, "mostly belonging to celebrities," between November 2012 and September 2014, when the photos were posted online. The U.S. attorney's office in the Central District of California has confirmed that Collins was charged as a result of a federal investigation into Celebgate, although court documents and statements pertaining to his plea deal do not name any of his famous victims.

Advertisement
Advertise with NZME.

Jennifer Lawrence, Kate Upton, Kirsten Dunst, Avril Lavigne, Lea Michele, McKayla Maroney and Ariana Grande were among the celebrities whose photos were said to be in the Celebgate dump. Some, like Lawrence, Upton and Dunst, confirmed that the photos were genuine.

Collins allegedly gained access by setting up emails designed to look like official accounts associated with the Google or Apple services used by his celebrity targets. Some of the emails he used included "e-mail.protection318@icloud.com," "noreply_helpdesk011@outlook.com," and "secure.helpdesk0019@gmail.com," according to court documents. Then, it seems that whoever was managing the personal accounts of several of the targeted celebrities complied, replying to those messages with the requested access information: the usernames and passwords for their accounts.

Once he had that information, Collins also had access to everything stored within. He took photos and videos, and sometimes used "a software program to download the entire contents of the victims' Apple iCloud backups," the U.S. attorney's office said.

David Bowdich, assistant director in charge of the FBI's Los Angeles Field Office, released a statement urging everyone to take precautions against schemes like the one linked to Collins. "We continue to see both celebrities and victims from all walks of life suffer the consequences of this crime and strongly encourage users of Internet-connected devices to strengthen passwords and to be skeptical when replying to emails asking for personal information," he said.

Discover more

Entertainment

Sorry guys, your favourite supermodel just got engaged

03 May 07:37 PM
Some, like Kirsten Dunst, confirmed that the photos were genuine. Photo / Getty Images
Some, like Kirsten Dunst, confirmed that the photos were genuine. Photo / Getty Images

But there's more you can do, particularly on the specific services named in this case: Both iCloud and Gmail allow users to turn on two-factor authentication, which adds an additional step to logging on to an account. Instead of just a username and password (which, by the way, should be different for each account), an account with two-factor enabled also requires a unique code, sent to the user's phone at the time of login. More and more services are starting to enable two-factor security measures. Turn it on if it's available.

We still know very little about how the photos went from people like Collins to the whole Internet. At the time, 4Chan users were talking about a secret, very creepy-sounding underground ring that connected the people who hacked celebrity accounts with those who wanted to sell or collect them. The U.S. attorney's office said investigators had "not uncovered any evidence linking Collins to the actual leaks or that Collins shared or uploaded the information he obtained."

It seems unlikely that investigators believe Collins is the sole source of the photos in the Celebgate cache. Gawker reported in January that two Chicago homes were raided in connection with the Celebgate investigation. In both cases, according to court documents obtained by Gawker, investigators believed that the individuals in question had also used phishing schemes to target the iCloud accounts of celebrities connected to the stolen photo cache. The district attorney's office told Gawker on Tuesday that the Chicago raids and the charge against Collins were "directly related."

Collins is the first to be charged in connection with the FBI's investigation. As part of a plea deal, prosecutors will recommend an 18-month prison sentence. The charge against him carries a maximum of five years in prison.

Save

    Share this article

Latest from Entertainment

Premium
Entertainment

TikTok made Addison Rae famous. Pop made her cool

19 Jun 06:00 AM
Entertainment

The five best films for your Matariki weekend watchlist

19 Jun 04:00 AM
Entertainment

Why matchmakers are conflicted about the new rom-com about matchmakers

18 Jun 05:00 PM

Help for those helping hardest-hit

sponsored
Advertisement
Advertise with NZME.

Latest from Entertainment

Premium
TikTok made Addison Rae famous. Pop made her cool

TikTok made Addison Rae famous. Pop made her cool

19 Jun 06:00 AM

NY Times: The onetime social media superstar re-emerged as rookie pop star of the year.

The five best films for your Matariki weekend watchlist

The five best films for your Matariki weekend watchlist

19 Jun 04:00 AM
Why matchmakers are conflicted about the new rom-com about matchmakers

Why matchmakers are conflicted about the new rom-com about matchmakers

18 Jun 05:00 PM
Tom Cruise, Dolly Parton to be awarded honorary Oscars

Tom Cruise, Dolly Parton to be awarded honorary Oscars

18 Jun 07:26 AM
Inside Leigh Hart’s bonkers quest to hand-deliver a SnackaChangi chip to every Kiwi
sponsored

Inside Leigh Hart’s bonkers quest to hand-deliver a SnackaChangi chip to every Kiwi

NZ Herald
  • About NZ Herald
  • Meet the journalists
  • Newsletters
  • Classifieds
  • Help & support
  • Contact us
  • House rules
  • Privacy Policy
  • Terms of use
  • Competition terms & conditions
  • Our use of AI
Subscriber Services
  • NZ Herald e-editions
  • Daily puzzles & quizzes
  • Manage your digital subscription
  • Manage your print subscription
  • Subscribe to the NZ Herald newspaper
  • Subscribe to Herald Premium
  • Gift a subscription
  • Subscriber FAQs
  • Subscription terms & conditions
  • Promotions and subscriber benefits
NZME Network
  • The New Zealand Herald
  • The Northland Age
  • The Northern Advocate
  • Waikato Herald
  • Bay of Plenty Times
  • Rotorua Daily Post
  • Hawke's Bay Today
  • Whanganui Chronicle
  • Viva
  • NZ Listener
  • Newstalk ZB
  • BusinessDesk
  • OneRoof
  • Driven Car Guide
  • iHeart Radio
  • Restaurant Hub
NZME
  • About NZME
  • NZME careers
  • Advertise with NZME
  • Digital self-service advertising
  • Book your classified ad
  • Photo sales
  • NZME Events
  • © Copyright 2025 NZME Publishing Limited
TOP