Skip to content
The Cyber Security Place

Mobile

The critical iOS bug allowed hackers to impersonate users

Reported by securityaffairs.co

Apple has fixed a serious vulnerability in the iOS operating system that could be exploited by hackers to impersonate users who visit websites that use unencrypted authentication cookies.

The issue resides in the implementation of a cookie store iOS shares between the Safari browser and a separate embedded browser used. The cookie store is used by OS to negotiate “captive portals” that are displayed by many Wi-Fi networks when a user makes a first access.

Read the full article at securityaffairs.co