Virginia Teacher Sentenced to 34 Months in Prison for 2014 Celebrity iCloud Hack

iCloud AltFor his role in the 2014 iCloud hacks that saw many celebrity photos illicitly shared on the internet, former high school teacher Christopher Brannan has been sentenced to 34 months in prison, according to the U.S. Attorney's Office for the Eastern District of Virginia (via AppleInsider).

Brannan was charged with unauthorized access to a protected computer and aggravated identity theft. Court documents say that he accessed the ‌iCloud‌, Yahoo, Facebook, and email accounts of more than 200 victims, both celebrities and non-celebrities.

He was able to obtain full ‌iCloud‌ backups, photographs, and other information using phishing email accounts that were designed to look like legitimate emails from Apple. He also hacked email accounts by answering security questions using data found on victims' Facebook accounts.

After obtaining Apple account information, Brannan would search for "sensitive and private photographs and videos, including nude photographs."

Brannan is one of multiple people who were found accessing and distributing celebrity photos in the 2014 attack. Ryan Collins, Edward Majerczyk, and Emilio Herrera, and George Garafano have previously been sentenced to prison terms ranging from eight months to 18 months.

When hundreds of nude celebrity photos began leaking on the internet in 2014 as part of what's now known as the "Celebgate" attack, there was initial speculation that ‌iCloud‌ had been hacked.

Following an investigation, however, Apple found that the accounts in question were compromised by weak passwords and skilled phishing attempts.

Apple has since implemented multiple changes to ‌iCloud‌ security, adding two-factor authentication to iCloud.com, introducing email alerts when an ‌iCloud‌ account is accessed either on the web or on another device, and requiring app-specific passwords for third-party apps that access ‌iCloud‌.

Unfortunately, the kind of phishing emails that led to the 2014 celebrity leak are still widely used today, and phishing scammers have only gotten better at what they do.

To thwart phishing attempts, Apple maintains a support page with information on how to avoid fake support calls, phishing emails, and other scam techniques that malicious individuals employ to extract information from Apple users.

Those concerned about being the victim of a phishing attack should take measures to stay safe, including using two-factor authentication, getting a password manager like 1Password and using a unique password for each and every site, and avoiding suspicious phone calls and emails, even if they look like they come from Apple.

Popular Stories

iPhone 17 Pro Dark Blue and Orange

iPhone 17 Release Date, Pre-Orders, and What to Expect

Thursday August 28, 2025 4:08 am PDT by
An iPhone 17 announcement is a dead cert for September 2025 – Apple has already sent out invites for an "Awe dropping" event on Tuesday, September 9 at the Apple Park campus in Cupertino, California. The timing follows Apple's trend of introducing new iPhone models annually in the fall. At the event, Apple is expected to unveil its new-generation iPhone 17, an all-new ultra-thin iPhone 17...
xiaomi apple ad india

Apple and Samsung Push Back Against Xiaomi's Bold India Ads

Friday August 29, 2025 4:54 am PDT by
Apple and Samsung have reportedly issued cease-and-desist notices to Xiaomi in India for an ad campaign that directly compares the rivals' devices to Xiaomi's products. The two companies have threatened the Chinese vendor with legal action, calling the ads "disparaging." Ads have appeared in local print media and on social media that take pot shots at the competitors' premium offerings. One...
iPhone 17 Pro Iridescent Feature 2

iPhone 17 Pro Clear Case Leak Reveals Three Key Changes

Sunday August 31, 2025 1:26 pm PDT by
Apple is expected to unveil the iPhone 17 series on Tuesday, September 9, and last-minute rumors about the devices continue to surface. The latest info comes from a leaker known as Majin Bu, who has shared alleged images of Apple's Clear Case for the iPhone 17 Pro and Pro Max, or at least replicas. Image Credit: @MajinBuOfficial The images show three alleged changes compared to Apple's iP...
maxresdefault

The MacRumors Show: iPhone 17's 'Awe Dropping' Accessories

Friday August 29, 2025 8:12 am PDT by
Following the announcement of Apple's upcoming "Awe dropping" event, on this week's episode of The MacRumors Show we talk through all of the new accessories rumored to debut alongside the iPhone 17 lineup. Subscribe to The MacRumors Show YouTube channel for more videos We take a closer look at Apple's invite for "Awe dropping;" the design could hint at the iPhone 17's new thermal system with ...

Top Rated Comments

ipedro Avatar
85 months ago
It was not a hack. You should know better, this is a tech website. We have a hard enough time correcting the misconception that iCloud was hacked (it wasn’t), we don’t need Macrumors reinforcing it.

This was social engineering, phishing celebrities into giving up their passwords voluntarily.
Score: 28 Votes (Like | Disagree)
zorinlynx Avatar
85 months ago
Ah, yes. The “Fappening”!
I know, right? I'm not sure why the post called it "Celebgate". I've never heard it called that! It's always been "The Fappening".
Score: 25 Votes (Like | Disagree)
MagicBoy Avatar
85 months ago
Since when was it called Celebgate? I'm told the torrent file was called "The Fappening".
Score: 17 Votes (Like | Disagree)
johnalan Avatar
85 months ago
What a way to treat a national treasure.
Score: 17 Votes (Like | Disagree)
Fortimir Avatar
85 months ago
"...as part of what's now known as the "Celebgate" attack."

Stop trying to make "Celebgate" happen. It's not going to happen.
Score: 17 Votes (Like | Disagree)
JimmyHook Avatar
85 months ago
There has never been a hack of iCloud period. The law requires any hacks be reported, none have, therefore iCloud is still the most secure cloud service in existence
[doublepost=1551468630][/doublepost]
If they're storing passwords correctly, how would they know that?
By asking the account owners during an investigation is the most likely answer
Score: 16 Votes (Like | Disagree)