Oke jadi gue baru baca berita yang bikin gue melongo. Apple tuh ternyata lagi gaspol banget sama OpenAI — mereka ngeluarin lawsuit besar-besaran karena tuduh OpenAI colong data rahasia mereka. Dan yang paling kocak? Ini melibatkan mantan karyawan yang exploited bug langka yang bahkan Apple sendiri nggak tau ada. Seriously, ini plot twist yang lebih dramatis dari series Silicon Valley.
Kronologi: Bug Langka yang Nggak Boleh Keluar Kantor
Jadi begini ceritanya. Ada mantan Apple employee bernama Chang Liu — dia posisi System Electrical Engineer — yang udah resign dan跳槽 (pindah) ke OpenAI. Nah, setelah dia nggak di Apple lagi, dia tuh masih bisa akses jaringan internal Apple. Carole? Dia nemuin dan exploited "a rare, previously unknown authentication bug" — yang dalam bahasa security namanya zero-day vulnerability. Artiinya, Apple nggak punya waktu sama sekali buat patch bug ini karena mereka aja nggak tau ada.
Menurut Apple dalam complaint mereka, Liu berhasil download "dozens of Apple's confidential hardware-related files" selama beberapa minggu sambil jadi employee baru di OpenAI. File-file ini termasuk:
- Informasi produk yang belum dirilis
- Engineering presentations
- Technical specifications
- Proprietary project data
Red flag parah kan? Ini bukan cuma salah upload, tapi bener-bener systematic theft of trade secrets.
The LOL Moment yang Bikin Apple Marah
Ini yang bikin gue nggak bisa berhenti ketawa — dan Apple pasti no obat banget. Liu tuh趁着 (manfaatin) kesempatan buat akses Apple network storage, dan waktu dia berhasil, dia chat ke koleganya Yu-Ting Peng:
"LOL, I found out I can access the [network storage], so funny."
Gue serius. Dia literally bilang "LOL so funny" sambil download file rahasia Apple. Dan nggak berhenti di situ — Liu juga nggak balikin laptop kerja Apple yang dia pake. Bahkan lebih parahnya, dia pake laptop Apple-issued milik Peng (yang masih employee Apple) while Peng still employed there and Liu was not. That's like stealing the keys to the vault while the previous owner is still at the door.
Apple: Kami Sudah Fix, Tapi Reputasinya Sudah Kena
Apple udah pasti patch bug ini sekarang. Dalam press release mereka, Apple bilang mereka terminated Liu's access begitu tau ada "security breach." Mereka juga bilang bug ini "could have allowed a few other people" buat akses data — tapi berdasarkan server logs, apparently cuma Liu yang exploit ini buat nyuri data.
Masalahnya, ini highlight vulnerability yang banyak perusahaan face: ketika employee resign, nggak semua organisasi langsung decommission credentials mereka. sometimes there's a gap between when someone leaves and when their access is actually revoked. Dalam kasus Liu, gap ini ternyata fatal — dia masih bisa masuk ke sistem berbulan-bulan depois resign.
Geek Opinion: Security Culture Matters
Gue sebagai tech enthusiast tuh paham sih kenapa Apple marah banget. Mereka spend billions buat R&D, dan tiba-tiba ada orang yang bisa akses hasil kerja keras tim engineering mereka dengan cara yang bahkan nggak perlu hacking advanced — just exploit existing vulnerability yang seharusnya udah nggak bisa diakses.
Tapi yang paling bikin guethinking adalah: Liu nggak report bug ini ke Apple sesuai employment agreement obligations. Nggak juga delete program yang allow access. That's a serious breach of trust and contractual obligations.
Apple udah file suit di U.S. District Court for Northern District of California, San Jose, dan minta jury trial. OpenAI sendiri udah bilang mereka "have no interest in other companies' trade secrets" — tapi tetap下来, insiden ini jadi pengingat brutal bahwa security culture itu penting banget, baik dari sisi employee maupun employer.
Buat kalian yang lagi di tech industry: please, jangan jadi Chang Liu. Kalo nemu bug, report. Kalo resign, return everything. Dan kalo lo udah di tempat baru, respect the old company's IP. Because apparently, Apple doesn't play around when it comes to protecting their secrets.



