toggle

AAPL Stock: 132.13 ( + 2.51 )

Printed from http://www.macnn.com

iOS 5.1 Safari vulnerability allows for spoofed URLs

updated 11:25 am EDT, Thu March 22, 2012

Dutch government issues official warning

A researcher with MajorSecurity, David Vieira-Kurz, has discovered a serious security vulnerability in the iOS 5.1 version of Safari. The problem lies with the way iOS handles the JavaScript window.open() method, used to open a new browser window. A malicious coder could use this to spoof URLs, tricking people into visiting copycat websites that might contain other threats or ask for credit card information.

The flaw has been tested on the iPhone 4, iPhone 4S, iPad 2, and third-gen iPad, and the Dutch Ministry of Security and Justice has reportedly even issued a warning. It was first discovered in iOS 5, and then replicated on March 1st. Apple was alerted on the 2nd and acknowledged the issue the next day, but has yet to put out a firmware update.

Apple now has at least two problems to address with new firmware. The other is weak Wi-Fi reception, a glitch resurrected from the first-gen iPad. Two temporary solutions include toggling Wi-Fi off and on, or simply rebooting an iPad.




by MacNN Staff

POST TOOLS:

TAGS :

toggle

Comments

Login Here

Not a member of the MacNN forums? Register now for free.

toggle

Network Headlines

Follow us on Facebook

toggle

Most Popular

Advertisement

Recent Reviews

Notti smart lamp from Witti

Perhaps you've already seen our review of the Dotti LED display from Witti Design. Meet Notti, Dotti's "sibling". Notti is a softb ...

Seagate Personal Cloud (2-Bay)

When it comes to backing up files, many users are now looking to the myriad of cloud storage solutions available. There is no doubt th ...

Leitz Icon Label Printer

When you say the words "label printer" to people, they either just really don't care, or they get incredibly excited. This is one o ...

toggle

Most Commented