Bug in iOS Mail app lets hackers send fake password collector as a pop-up notification

The next time you’re asked for log-in credentials when using an iOS device, think twice before answering. An exploit in Apple’s Mail app has been discovered, and it could pinch the very info you don’t want anyone to know. In the stock iOS Mail app, hackers can create a pop-up that asks for various log-in credentials. It looks legitimate, and happens because the Mail app allows a line of code to load when it should be ignored, which loads remote HTML content. That HTML code can be used to bring up a very plain password collector, which can be created…

This story continues at The Next Web

from The Next Web http://ift.tt/1F8KEtV

0 Kommentare:

Kommentar veröffentlichen