- Advertisment -

Camera vulnerability discovered in Safari

As pointed out by Ryan Pickren on his blog, a vulnerability inside Safari allowed websites to access the iPhone’s cameras without users knowledge.

Beside this, the vulnerability also allowed malicious website to sneak and pretend to be trusted website on Desktop View inside Safari on Mac, iOS and iPadOS.

- Advertisement -

Even worse, on a secure website, there might also be advertisements that could exploit users’ privacy or hackers to use their “fraudulent identity” to invade and steal personal datas.

This security flaw was possible because the default settings were set to be allow trusted websites to access camera and microphone without a manual permission that had to be granted by the user, therefore, the malicious websites has to be disguised as video-conferencing websites such as Skype and Zoom, and the users wouldn’t be aware of that.

Apple has offered a reward of $75,000 for leaking the vulnerability to them, as long as he reported it and found it that in falls into the “Network Attack without User Interaction: Zero-Click Unauthorized Access to Sensitive Data” category, which Apple usually offers bounties for on the developer website.

       

Popular Stories

Apple Pay Deal: Get 30 percent off from Ray-Ban

The sun is shining throughout the U.S., the temperatures are getting warmer and that means you might need a pair of sunglasses. Thankfully for you,...

EXCLUSIVE: How to get the Apple TV app for Windows 10 computers

Apple has been said to be working on a new Apple TV app for Windows 10 computers. Right now, the only Apple apps that...

Writer of the Month

Recent Stories

My Disney Experience app expands Apple Pay support

Disney has had plans to have more contactless payment options for a little while now and it is keeping its promise on that. The My...

Chipotle set to be adding contactless payments soon

Chipotle is one of America's most popular Mexican food restaurants and it looks like the company is going to be adding contactless support to...