• Home
  • Gadget News
  • Laptop Reviews
  • Smartphone Reviews
  • Tablet Reviews
  • Gadget Reviews
  • Camera Reviews
  • Android apps
  • Home
  • Gadget News
  • Laptop Reviews
  • Smartphone Reviews
  • Tablet Reviews
  • Gadget Reviews
  • Camera Reviews
  • Android apps
Previous Next

iOS 5.1 vulnerability lets malicious websites display fake URLs on Safari browser

Posted by: Digital Editor , March 27, 2012

iOS-5.1 vulnerability
If you own a device running iOS 5.1 or plan to update to the latest iOS version, nothing can prepare you for the next few words I’m about to speak – there’s a chance you visited malicious websites without you knowing. The vulnerability was discovered on Safari and allows malicious websites to display a URL different to the website you’re actually visiting.

To put things in perspective, malicious websites don’t place any direct threat to your iOS device even if they contained viruses or Trojans. As we all know, smartphones and tablets aren’t vulnerable to them as computers are. They do, however, pose a greater threat to users with their ability to access sensitive information. The latest iOS 5.1 version allows these harmful websites to exploit Safari and display a fake URL.

The vulnerability was discovered by David Vieira-Kurz of MajorSecurity less than a week ago, explaining that it tricks people into typing sensitive information. To demonstrate how it works, the German security firm prepared this link. If you view the attached link using a secure browser and click “demo,” you will be informed that the website is being “spoofed” and the correct URL will be displayed. But if you do the same using a device on iOS 5.1, Safari will show that you are on Apple’s official website and not warn you about the fake URL. Because you can’t tell the difference between trusted and malicious websites, you could end up logging into sites you thought was Facebook, Twitter, or Gmail and expose sensitive information like your credit card number.

Days after iOS 5.1 was released, users were blindsided by a major security glitch which granted unsecured access to their device. The bug allowed strangers to bypass the security lock via the camera shortcut. But this new vulnerability on Safari is far more serious and lets cybercriminals exploit sensitive data.

Despite these bugs, 80 percent of eligible devices were updated to iOS 5.1 fifteen days after its release. If you plan to update your iPhone, iPad, or iPod Touch to Apple’s latest software, we recommend that you be careful with clicking links. Apple is aware of this vulnerability and will most likely include a fix in the next update. Hang on.

via MajorSecurity

Related posts:

  1. New York Post Blocks iPad Access via Safari Browser
  2. A New iPhone Worm is Here, And This Time it’s Malicious
  3. 7 great extensions for the Mac OS X Safari browser
  4. Motorola Droid X 2 Shows Up on Verizon and Motorola’s Websites
  5. Mystery Apple devices on iOS 6 visit Ars Technica – I doubt they’re just “testing” it

Tags: Apple, iOS-5.1

Share!
Tweet
Advertise here

Social

10658
followers
Popular
Recent
Comments
Tags
  • Panasonic FZ100 review

    Panasonic FZ100 – the perfect camera for the beginner and amateur photographers

    June 21, 2011
    iPhone 4S vs Samsung Galaxy S2

    iPhone 4S vs Samsung Galaxy S2 – I think Apple needs an iPhone 5 ASAP

    October 15, 2011
    Nokia Slide-Out QWERTY Windows Phone 7

    Nokia Could Release a Slide-Out QWERTY Windows Phone 7 Later this Year

    June 19, 2011
    Google lifts the curtain on the new Android Market on the Web

    Past week’s top news in the mobile industry

    February 14, 2011
    Samsung Galaxy S vs Galaxy S2 - is it worth upgrading

    Samsung Galaxy S vs Galaxy S2 – is it worth upgrading?

    June 21, 2011
  • HP Envy X2

    HP Envy X2 – decent specs, great design and ...

    May 20, 2013
    HTC-One-vs-iPhone5-detailed-review

    HTC One vs Apple iPhone 5 – you must be real ...

    May 11, 2013
    HP Slate 7

    HP Slate 7 – the Nexus 7 competitor exudes E ...

    May 8, 2013
    IdeaTab-Lynx

    IdeaTab Lynx – Lenovo’s idea of a Wind ...

    April 30, 2013
    Asus VivoTab Smart

    Asus VivoTab Smart – the best of Transformer ...

    April 28, 2013
  • Awesome Blog. BB10 looks amazing from what I've se ...

    February 7, 2013

    The downloaded .zip file goes to the root of the S ...

    January 23, 2013

    its in the URL you morons. it says June 2011.

    December 1, 2012

    download aptoid from play store and download all a ...

    September 28, 2012

    if jailbreak is a plus for iPhone I know something ...

    September 28, 2012
  • #SmokedByWindowsPhone $10/mo $100 $149 $149.99

Most Viewed Posts of the week

  • Samsung Galaxy S vs Galaxy S2 – is it worth upgrading?8,201 views
  • Sony Ericsson Xperia Mini Pro – a small and attractive smartphone with a QWERTY keyboard8,151 views
  • Nokia Could Release a Slide-Out QWERTY Windows Phone 7 Later this Year4,900 views
  • Samsung Galaxy S2 Mini – an affordable, smaller version of the big screen, dual core monster4,483 views
  • Verizon Jetpack 890L quick review – why it is better than Jetpack 4620L3,691 views

Sites We like

  • Engadget Mobile
  • Gizmodo – The Gadget Guide
  • Phone Developers Jobs
  • Ubergizmo – The Gadget Blog
  • Wired News

Submit Your INQUIRY

  • About Us
  • Advertise with Us
  • Write for US

Latest Tweets

  • GadgetManiaCom: #HP #EnvyX2 – decent specs, great design and #Windows8 in a #Ultrabook hybrid format http://t.co/KUEUYM6mmP
  • GadgetManiaCom: #HTCOne vs Apple #iPhone 5 – you must be really dedicated to Apple to choose the latter http://t.co/AEcyPXkJx0
  • GadgetManiaCom: #HPSlate7 - 7 inch #Androidtablet #specifications #review http://t.co/qOYGRz2yIL
Copyright © 2013 GadgetMania.com
  • Home
  • Write for US