Xorte logo

News Markets Groups

USA | Europe | Asia | World| Stocks | Commodities



Add a new RSS channel

 
 


Keywords

2022-01-16 21:07:11| Engadget

Apple device users appear to be vulnerable to a significant browser privacy flaw. According to 9to5Mac, FingerprintJS has disclosed an exploit that lets attackers obtain your recent browser history, and even some Google account info, from Safari 15 across all supported platforms as well as third-party browsers on iOS 15 and iPadOS 15. The IndexedDB framework (used to store data on many browsers) is violating the "same-origin" policy that prevents documents and scripts from one location (such as a domain or protocol) from interacting with content from another, letting appropriately coded websites deduce Google info from signed-in users as well as histories from open tabs and windows.The flaw only compromises the names of the databases rather than the content itself. However, this would still be enough for a malicious site owner to grab your Google username, discover your profile picture and otherwise learn more about you. The history could also be used to piece together a rudimentary profile of the sites you like. Private browsing won't defeat the exploit, FingerprintJS said.We've asked Apple for comment. FingerprintJS said it reported the issue on November 28th, however, and that Apple hadn't yet addressed it with security patches honoring same-origin policy. Until then, the only solution may be to either use a third-party browser on Macs or block all JavaScript, neither of which is necessarily an option.


Category: Marketing and Advertising

 

Latest from this category

23.02Anthropic accuses three Chinese AI labs of abusing Claude to improve their own models
23.02Summer Game Fest runs from June 5-8
23.02Bungie says 'no second chances' if you're caught cheating in Marathon
23.02Nothing reveals the Phone 4a ahead of schedule
23.02Ball x Pit will land on iOS and Android on March 12
23.02Lamborghini ditches plans for its all-electric supercar due to 'close to zero' buyer interest
23.02A new Evangelion series is coming from Studio Khara and Yoko Taro, creator of NieR
23.02The creators of Dark Sky have a new weather app
Marketing and Advertising »

All news

23.02Stocks Lower into Final Hour on US Global Tariff Uncertainty, AI Industry Disruption Worries, Crypto Plunge, Tech/Financial Sector Weakness
23.02Tomorrow's Earnings/Economic Releases of Note; Market Movers
23.02Bull Radar
23.02Bear Radar
23.02Yes, Dunkins massive 48-ounce coffee bucket is real: List of sightings grows at locations in multiple states
23.02Anthropic accuses three Chinese AI labs of abusing Claude to improve their own models
23.02Damage to streets remains after freight train derailment in Dixmoor, investigation continues in Chicago Ridge
23.02What Makes This Trade Great: Hecla Mining (HL) Short Setup
More »
Privacy policy . Copyright . Contact form .