DOJ Prosecutions of the 2014 Celebrity Photo-Hack ('Fappening') Phishers
2016–2018
Federal prosecutors convicted four men — Ryan Collins, Edward Majerczyk, George Garofano and Emilio Herrera — for phishing schemes that compromised celebrities' iCloud and Gmail accounts; the stolen nude photos were mass-distributed on Reddit's r/TheFappening in 2014.
What happened
The September 2014 leak of stolen private nude photos of dozens of female celebrities — commonly called 'Celebgate' or 'The Fappening' — was distributed at scale on Reddit, where r/TheFappening became the central hub before Reddit banned it. The underlying intrusions were not a single iCloud 'hack' but a series of phishing schemes in which the perpetrators impersonated Apple and Google security teams to trick victims into surrendering their account credentials. The U.S. Department of Justice pursued the phishers under the Computer Fraud and Abuse Act for unauthorized access to protected computers.
Ryan Collins of Lancaster, Pennsylvania, pleaded guilty in 2016 after a phishing campaign that accessed at least 50 iCloud and 72 Gmail accounts, mostly belonging to female celebrities; he was sentenced to 18 months in federal prison. Edward Majerczyk of Chicago was sentenced in January 2017 to 9 months plus restitution for a scheme that compromised more than 300 accounts. George Garofano of Connecticut was sentenced in August 2018 to 8 months for phishing more than 200 Apple iCloud accounts. Emilio Herrera of Chicago was also charged in the same investigation.
Notably, prosecutors stated they had not found evidence directly linking any of these defendants to the public posting of the images. The cases established that the breaches were credential-phishing crimes rather than a flaw in Apple's systems, and they remain among the most prominent CFAA prosecutions tied to NCII, even as Reddit served as the primary distribution venue for the stolen material.
Impact
Produced multiple federal CFAA convictions and prison sentences (Collins 18 months; Majerczyk 9 months; Garofano 8 months), clarifying that the leaks stemmed from targeted phishing of individuals rather than a platform breach, and underscoring the gap between prosecuting the intrusions and the separate harm of mass distribution on Reddit.