Former Apple Employee Charged With Theft of Trade Secrets Related to Autonomous Car Project [Updated]

The United States Federal Bureau of Investigation this week charged former Apple employee Xiaolang Zhang with theft of trade secrets, according to documents filed with the Northern District Court of California.

Zhang was hired at Apple in December of 2015 to work on Project Titan, developing software and hardware for use in autonomous vehicles. Zhang specifically worked on Apple's Compute Team, designing and testing circuit boards to analyze sensor data.

appleintellectualpropertydocument

The intellectual property disclosure on one of the documents Zhang stole

He was provided with "broad access to secure and confidential internal databases" due to his position, which contained trade secrets and intellectual property for the autonomous driving project that he ultimately ended up stealing.

In April 2018, Zhang took family leave from Apple following the birth of his child, and during that time, he visited China. Shortly after, he told his supervisor at Apple he was leaving the company and moving to China to work for XMotors, a Chinese startup that also focuses on autonomous vehicle technology.

Zhang's supervisor felt that he had "been evasive" during the meeting, which led Apple's New Product Security Team to begin an investigation, looking into Zhang's historical network activity and analyzing his Apple devices, which were seized when he resigned.

Apple found that just prior to Zhang's departure, his network activity had "increased exponentially" compared to the prior two years he had worked at Apple. He accessed content that included prototypes and prototype requirements, which the court documents specify as power requirements, low voltage requirements, battery system, and drivetrain suspension mounts.

The majority of his activity consisted of both bulk searches and targeted downloading copious pages of information from various confidential database applications. The information contained within the downloading contained trade secret intellectual property, based on the level of Zhang's access within Apple's autonomous vehicle team.

A review of recorded footage at Apple indicated Zhang had visited the campus on the evening of Saturday, April 28, entering both Apple's autonomous vehicle software and hardware labs, which coincided with data download times, and he left with a box of hardware.

In a second interview with Apple's security team, Zhang admitted to taking both online data and hardware (a Linux server and circuit boards) from Apple during his paternity leave. He also admitted to AirDropping sensitive content from his own device to his wife's laptop.

All of Apple's evidence was relayed to the FBI after the company's Digital Forensic Investigations team discovered that at least 60 percent of the data Zhang had downloaded and transferred to his wife's computer was "highly problematic." The FBI, in the court filing, describes the information as "largely technical in nature, including engineering schematics, technical reference manuals, and technical reports."

Of interest, the filing also gives a glimpse into Apple's security protocols. To access sensitive projects like Titan, an employee must be logged into Apple's virtual private network and must be granted "disclosure," a status that can only be granted when an employee is sponsored by another employee who already has access to the project, with an administrator reviewing all requests. Approximately 5,000 Apple employees have access to data on Apple's autonomous driving efforts, with the databases Zhang accessed further restricted to approximately 2,700 "core employees."

When hired, Zhang signed an Intellectual Property Agreement and attended a mandatory in-person secrecy training session, which he violated. Zhang was interviewed by the FBI in late June, where he admitted to stealing the information, and he was later arrested attempting to leave to China on July 7.

For stealing Apple's trade secrets, Zhang is facing up to 10 years in prison and a $250,000 fine.

It's no surprise that Apple cracked down on Zhang. Shortly before Zhang's theft was discovered, Apple sent out a lengthy cautionary memo to employees warning them against leaking data to the media. In the letter, Apple said that in 2017, it caught 29 leakers, with 12 of those individuals being arrested and charged.

Update: Apple provided the following statement on the case to TechCrunch: "Apple takes confidentiality and the protection of our intellectual property very seriously. We're working with authorities on this matter and will do everything possible to make sure this individual and any other individuals involved are held accountable for their actions."

Update 2: XMotors said there is no indication that Zhang ever communicated any sensitive information from Apple to XMotors, according to Reuters. XMotors also said the firm had terminated Zhang and is supporting local authorities.

Update 3: On July 16, Zhang pled not guilty to the charges.

Popular Stories

iPhone SE 4 Vertical Camera Feature

iPhone SE 4 Rumored to Use Same Rear Chassis as iPhone 16

Friday July 19, 2024 7:16 am PDT by
Apple will adopt the same rear chassis manufacturing process for the iPhone SE 4 that it is using for the upcoming standard iPhone 16, claims a new rumor coming out of China. According to the Weibo-based leaker "Fixed Focus Digital," the backplate manufacturing process for the iPhone SE 4 is "exactly the same" as the standard model in Apple's upcoming iPhone 16 lineup, which is expected to...
iPhone 16 Pro Sizes Feature

iPhone 16 Series Is Just Two Months Away: Everything We Know

Monday July 15, 2024 4:44 am PDT by
Apple typically releases its new iPhone series around mid-September, which means we are about two months out from the launch of the iPhone 16. Like the iPhone 15 series, this year's lineup is expected to stick with four models – iPhone 16, iPhone 16 Plus, iPhone 16 Pro, and iPhone 16 Pro Max – although there are plenty of design differences and new features to take into account. To bring ...
bsod

Crowdstrike Says Global IT Outage Impacting Windows PCs, But Mac and Linux Hosts Not Affected

Friday July 19, 2024 3:12 am PDT by
A widespread system failure is currently affecting numerous Windows devices globally, causing critical boot failures across various industries, including banks, rail networks, airlines, retailers, broadcasters, healthcare, and many more sectors. The issue, manifesting as a Blue Screen of Death (BSOD), is preventing computers from starting up properly and forcing them into continuous recovery...
iphone 14 lineup

Cellebrite Unable to Unlock iPhones on iOS 17.4 or Later, Leak Reveals

Thursday July 18, 2024 4:18 am PDT by
Israel-based mobile forensics company Cellebrite is unable to unlock iPhones running iOS 17.4 or later, according to leaked documents verified by 404 Media. The documents provide a rare glimpse into the capabilities of the company's mobile forensics tools and highlight the ongoing security improvements in Apple's latest devices. The leaked "Cellebrite iOS Support Matrix" obtained by 404 Media...
Apple Watch Series 9

2024 Apple Watch Lineup: Key Changes We're Expecting

Tuesday July 16, 2024 7:59 am PDT by
Apple is seemingly planning a rework of the Apple Watch lineup for 2024, according to a range of reports from over the past year. Here's everything we know so far. Apple is expected to continue to offer three different Apple Watch models in five casing sizes, but the various display sizes will allegedly grow by up to 12% and the casings will get taller. Based on all of the latest rumors,...
tinypod apple watch

TinyPod Turns Your Apple Watch Into an iPod

Wednesday July 17, 2024 3:18 pm PDT by
If you have an old Apple Watch and you're not sure what to do with it, a new product called TinyPod might be the answer. Priced at $79, the TinyPod is a silicone case with a built-in scroll wheel that houses the Apple Watch chassis. When an Apple Watch is placed inside the TinyPod, the click wheel on the case is able to be used to scroll through the Apple Watch interface. The feature works...

Top Rated Comments

JohnGrey Avatar
79 months ago
There's no way this wasn't a state-sponsored quid pro quo to give the Chinese company a leg up on automated vehicles. This will continue until there's a 100% punitive embargo on China, including their strategic staples like pork, requiring them to deliver full economic compensation for theft of intellectual property and complete monitored compliance with WTO regulation. Until that happens, this is equivalent to letting banks make tens of billions in fraudulent instruments and then fining them a few million in damages. Their investors don't care about the public and brand cost so long as the penalties are a tiny fraction of profits. China doesn't care either because, at the moment, the benefits outweigh the cost.
Score: 36 Votes (Like | Disagree)
Apple_Robert Avatar
79 months ago
Glad to see Apple found out and took swift action. Hope he gets the maximum sentence.
Score: 34 Votes (Like | Disagree)
AZREOSpecialist Avatar
79 months ago
This is how propaganda and disinformation work...

There's no way this wasn't a state-sponsored quid pro quo to give the Chinese company a leg up on automated vehicles.
Step 1: State an unprovable assumption that is designed to make the reader angry.

This will continue until there's a 100% punitive embargo on China, including their strategic staples like pork, requiring them to deliver full economic compensation for theft of intellectual property and complete monitored compliance with WTO regulation.
Step 2: State a second, unprovable assumption based on the first, unprovable assumption, along with a list of retaliatory responses that mirror a current political position that the author is attempting to justify.

Step 3: Try to get a blogger somewhere to focus on the unprovable assumptions and other inaccuracies as a way to justify a political stance, then peddle that blog to a large propaganda outlet like Fox News as a way to legitimize the misinformation.

You forgot Step 3. Maybe you're still working on that?

Yes, folks, this is how it's done.
Score: 33 Votes (Like | Disagree)
Crzyrio Avatar
79 months ago
You'd think that huge amounts of data access would be a red flag for their security people, especially at off hours.
There is no such thing as off hours in Silicon Valley :P
Score: 29 Votes (Like | Disagree)
Blackstick Avatar
79 months ago
He took the “great artists steal” thought to the next level.
Score: 21 Votes (Like | Disagree)
Mikey44 Avatar
79 months ago
Well... I think this confirms that they were working on a car.
Score: 17 Votes (Like | Disagree)