| Thread Tools |
17th January 2022, 12:04 | #1 |
[M] Reviewer Join Date: May 2010 Location: Romania
Posts: 153,575
| Safari exploit can leak browser histories and Google account info Apple device users appear to be vulnerable to a significant browser privacy flaw. According to 9to5Mac, FingerprintJS has disclosed an exploit that lets attackers obtain your recent browser history, and even some Google account info, from Safari 15 across all supported platforms as well as third-party browsers on iOS 15 and iPadOS 15. The IndexedDB framework (used to store data on many browsers) is violating the "same-origin" policy that prevents documents and scripts from one location (such as a domain or protocol) from interacting with content from another, letting appropriately coded websites deduce Google info from signed-in users as well as histories from open tabs and windows. https://www.engadget.com/safari-webk...2.html?src=rss |
Thread Tools | |
| |