Apple just made iCloud a lot more secure yesterday by rolling out a two-step authentication process that should keep hijackers at bay. However, a huge security hole was just found that allows hijackers to reset Apple ID passwords with only an email address and your date of birth.
The new exploit affects all customers who have not yet enabled the new two-step authentication feature. To make matters worse, some users who enabled two-step authentication yesterday, have to wait 3 days before it kicks in, meaning some might still be vulnerable to the exploit.
