Serious Safari bug reveals iPhone, iPad, and Mac users' personal data

Deutschland Nachrichten Nachrichten

Serious Safari bug reveals iPhone, iPad, and Mac users' personal data
Deutschland Neuesten Nachrichten,Deutschland Schlagzeilen
  • 📰 PhoneArena
  • ⏱ Reading Time:
  • 86 sec. here
  • 3 min. at publisher
  • 📊 Quality Score:
  • News: 38%
  • Publisher: 59%

A bug found in the iOS 15, iPadOS 15, and macOS versions of Safari can lead an attacker to discover personal information related to the user.

) published a report on Friday about a bug found in the iOS 15 version of the Safari mobile browser. The report states that this bug"lets any website track your internet activity and even reveal your identity." A bug found in an Application Programming Interface used and supported by most browsers could be used by attackers to find out many things about you.

An API is used by programmers to connect parts of the software to other software making it easier to develop programs. One such API, called IndexedDB, is supported by most major browsers and holds what the report calls"a significant amount of data."The bug in the iOS 15, iPadOS 15, and macOS allows random websites to know what other sites a user is visiting on other windows and tabs.

The Google User ID leads an attacker to a wealth of personal data. Each one can be used to identify a specific Google account and in combination with Google APIs, it can, at the least, reveal your profile picture to a hacker. It also could help the attacker grab much more personal information and unravel"multiple separate accounts" owned by the same user.

Unfortunately, learning your personal information doesn't require you to perform any specific action as the report states"A tab or window that runs in the background and continually queries the IndexedDB API for available databases, can learn what other websites a user visits in real-time. Alternatively, websites can open any website in an iframe or popup window in order to trigger an IndexedDB-based leak for that specific site.

FingerprintJS checked with Alexa's top 1,000 visited sites and found that 30 interact with indexed databases right on their homepage, without any interaction or authentication required by the user. Even if a person is using the private mode in Safari, if he visits multiple websites using the same tab, all databases interacted with are leaked to the sites the user subsequently visits.There isn't much that a Safari user can do if he is running iOS 15 or iPadOS 15.

Wir haben diese Nachrichten zusammengefasst, damit Sie sie schnell lesen können. Wenn Sie sich für die Nachrichten interessieren, können Sie den vollständigen Text hier lesen. Weiterlesen:

PhoneArena /  🏆 322. in US

Deutschland Neuesten Nachrichten, Deutschland Schlagzeilen

Similar News:Sie können auch ähnliche Nachrichten wie diese lesen, die wir aus anderen Nachrichtenquellen gesammelt haben.

Safari 15 bug can leak your recent browsing activity and personal identifiersSafari 15 bug can leak your recent browsing activity and personal identifiersThe bug stems from Apple’s application of the IndexedDB API.
Weiterlesen »

15 Best Parkas for Women This Winter in 2022 | Well+Good15 Best Parkas for Women This Winter in 2022 | Well+GoodFrigid temperatures can make going outside the least appealing concept. These are the 15 best parkas for women to help you brave the cold.
Weiterlesen »

Adalia Rose, YouTuber with rare genetic condition, dies at 15Adalia Rose, YouTuber with rare genetic condition, dies at 15Adalia Rose lived with a rare genetic condition called Hutchinson-Gilford progeria syndrome. She was 15 years old.
Weiterlesen »

'She touched MILLIONS': YouTube sensation Adalia Rose, with rare genetic disease, dies at 15'She touched MILLIONS': YouTube sensation Adalia Rose, with rare genetic disease, dies at 15YouTuber Adalia Rose Williams, who was diagnosed with Hutchinson-Gilford progeria syndrome as a baby, died at the age of 15.
Weiterlesen »



Render Time: 2025-03-04 09:27:07