Apple revealed a vulnerability to apply passwords that lasted months

Apple revealed a vulnerability to apply passwords that lasted months

Apple has corrected a bug in the iOS 18.2 password application which, for three months starting with the release of iOS 18, made users vulnerable to phishing attacks, according to an Apple Update of security content spotted by 9TO5MAC.

Here’s how Apple describes the bug and its corrective:

Impact: a user in a privileged network position may be able to disclose sensitive information

Description: This problem was resolved using HTTPS when sending the network information.

As 9TO5MAC Write, the password application sent unacline requests for the logos and icons it displays alongside the sites with which your stored passwords are associated. The absence of encryption noted an attacker on the same Wi-Fi network as you, as in an airport or coffee, could redirect your browser to a phishing site similar to a look to steal your connection identification information. It was first discovered by security researchers to Musk application developer.

In the description of the YouTube video below demonstrating the bug, mysk writes that he first pointed out the vulnerability in September. Apple describes the same bug in safety content updates For the MaciPad, and The vision proAlso.

Source link

Leave a Reply

Your email address will not be published. Required fields are marked *