If Apple had a security breach, and it seems like a massive one given the circumstances, are they not required by California law to report it to their customers?
That's more than enough reporting. If you want a full post-mortem, that's likely not something you'd get from a public company as big as Apple
Another comment mentioned that AWS post-mortems are also detailed and public, they don't really have another choice because their customers have their infrastructure running on AWS - so they want to know what happened and not be left in the dark.
[1] http://labs.spotify.com/2013/06/04/incident-management-at-sp...