Bug in Safari leaves cookies insecure
updated 02:10 pm EST, Fri November 21, 2003
Safari cookie bug noted
Insecure.ws Wednesday noted a was in Safari that enables "cookie theft" by Web sites. A malicious Web site with a name disguised to appear as that of another site could access cookies associated with the original site. "Apple has been warned and a security update should appear shortly," the site says. Apple's Mac OS X security update released earlier in the week included an update to Safari (version 1.1.1), but it does not address this particular issue.





