A hacker using the handle “Pr0x13” has released a password-hacking tool to GitHub website that assures attackers to break into any iCloud account, potentially giving them free access to victims’ iOS devices. The tool, dubbed iDict, actually makes use of an exploit in Apple’s iCloud security infrastructure to bypass restrictions and two-factor authentication security that prevents brute force attacks. Users using easy-to-guess passwords on their iCloud account are in more danger than those using a complex chain.
Source: https://thehackernews.com/2015/01/iDict-icloud-password-hacking-tool.html