Another Critical security flaw discovered in iPhone
Security experts have said that the size of the internet browser on the device means that iPhone users may be more susceptible to phishing attacks.
The URL bar on the Safari browser is so small that a person browsing the internet could be directed to a phishing website and not realise it, because they are unable to see the full URL.
The URL can be a giveaway that a site is not authentic, but the clue tends to be at the end of the line, where hackers can insert characters that distinguish the fake site from the real one.
Brian Chess, chief scientist at Fortify, wrote on his blog: "The iPhone browser displays only the first 20 or so characters of the URL, so it's easy to hide a big gnarly cross-site scripting attack without arousing any suspicion."
Earlier this week, another security company warned that a separate iPhone feature, which allows a user to automatically dial a phone number by clicking on a link on a website, could be prone to abuse by hackers.
By setting up a premium rate phone number, as well as running a script which initiated dialling when the cursor passed over it, a hacker could potentially fleece an unwitting user of the iPhone browser, SPI Labs said.
- Wide use of U.S. airport body scanners depends on Obama
- Apple wins appeal over alleged iPod hearing loss
- From Windows direct to your USB, the Folderix USB drive is for the icon loving fans
- 3D comes home in the US with first 3D cable channel in 2010
- Steampunked Palm Treo makes an old phone look older
- Nokia's latest patent stike on Apple a risk, but may pay off
- Nokia's latest patent stike on Apple a risk, but may pay off
- National Geographic archives in a 160GB HDD. Want?
- National Geographic archives in a 160GB HDD. Want?
- GSM Encryption no longer secure


del.icio.us
Digg
Comments (0 posted):
Post your comment