Apple: Terrorist's Apple ID Passcode Changed In Government Custody, Blocking Access
Company executives made the revelation hours after the Department of Justice demanded in court that Apple create a way into Syed Farook's phone. — Managing Editor, BuzzFeed San Francisco — Andrew Burton / Getty Images
Context & Ripple Effects
This revelation lands mid-fight. Three days earlier, a court had ordered Apple to disable the iPhone's 10-tries-and-wipe protection so the government could brute-force the passcode, and Apple had asked the FBI to file its application for a cracking tool under seal — a request the government refused, prompting Tim Cook's public response.
Apple's claim that the Apple ID passcode changed while the phone sat in government custody strikes at the core of the DOJ's argument: if the credential needed to reach the iCloud backup was altered outside Apple's control, the government's own handling becomes evidence in whether compelled decryption is even necessary. It also sets up Apple's broader filing that the requested tool would work on new iPhones too, not just one device.
First-order effects
- Apple gains a concrete factual counterargument hours before the DOJ's court demand hardens into the March 22 hearing, shifting the dispute from 'will Apple comply' to 'did government custody itself destroy the easiest route into the phone.'
- The DOJ and FBI must now defend their chain of custody over the device in public, on top of the political exposure they already took by refusing Apple's under-seal filing request.
Second-order effects
- Apple's parallel claim that the same 'back door' would open newer iPhones turns every other device maker's encryption design into a potential next target, raising the stakes beyond a single handset and giving the encryption-since-iOS-8 standoff its sharpest test case yet.
Third-order effects
- The arc ultimately resolved sideways rather than by precedent: the DOJ withdrew its legal action once an outside method cracked the phone, leaving the underlying question — whether courts can compel companies to weaken their own security — unsettled and reusable against any future locked device.
- If custody disputes like this recur, device makers face pressure to architect credentials so that no party, including law enforcement holding the hardware, can alter or expose recovery paths — making forensic access a designed-in decision rather than a courtroom negotiation.
The trend: Law-enforcement demands for access to encrypted consumer devices are escalating from single-case court orders into a standing structural conflict over who controls device credentials and recovery paths.