Security Alert: Safari for iOS 5.1 reportedly vulnerable to address bar spoofing
What does this mean in plain English? It means that the error can be exploited to trick users into supplying personal information to a malicious website, since the Safari address bar can display a totally different address than the website that is actually being displayed.
MajorSecurity.net has notified Apple of the issue, so it's just a matter of time before a patch is available to fix the problem. In the meantime, it's a good idea to not open untrusted links and to think twice about sending personal information to any website that asks for it through Safari on your iOS device.
For those who would like a working example of the vulnerability in action, MajorSecurity.net has created a web page at http://majorsecurity.net/html5/ios51-demo.html. Just open that page in Safari on a device iOS 5.1, click the demo button at the top of the page, and prepare to see something that looks amazingly like the www.apple.com site but is actually hosted by MajorSecurity.net.
We'll let you know when the update to fix this issue is available.
[via The Next Web]
Deals of the Daymore deals
Software Updatesmore updates
- Evernote introduces reminders to Mac, iOS apps
- Poser 10 and Poser Pro 2014 available, bringing new characters, physics and more
- Agile Partners releases Lick of the Day 2.0
- Google announces new Hangout app to hit iOS today
- Microsoft Office for Mac 2011 Update 14.3.4
- Pixelmator 2.2 available with over 100 new features and improvements