search technology reviews, news, features, group tests
Popular Searches:   video , dell , dvd
 |  Register
 |  Newsletters  | 
Sitemap  |  RSS
RSS
Monday November 23, 2009 7:54 AM AEST
Skip Navigation LinksPC Authority > News > Serious flaw found in Safari
Serious flaw found in Safari
NEWS

Serious flaw found in Safari

by Iain Thomson  on Jan 14, 2009
"I wonder if Safari's bastard child (Chrome) is also open to this vulnerability.8-[ It was developed from the same code and shared the early Safari carpet bombing vulnerability. Anybody heard ..."
 
A researcher has found a flaw that would allow hackers to steal information from those using Mac OS X 10.5, aka Leopard, or Safari for the PC.
The flaw was found by open source software developer Brian Mastenbrook. It occurs when the Safari browser interacts with RSS feeds and makes the personal information of the user vulnerable.

"Safari ... is vulnerable to an attack that allows a malicious web site to read files on a user's hard drive without user intervention," Mastenbrook wrote on his blog.

"This can be used to gain access to sensitive information stored on the user's computer, such as emails, passwords, or cookies that could be used to gain access to the user's accounts on some web sites."

While he understandably does not go into detail he says that people using OS X 10.5 are vulnerable no matter what browser they are using and PC users are at risk if using the Safari browser.

He has published a suggested workaround for Apple users but advises PC users of Safari to change browser for the moment.

Mastenbrook is seen as a reliable source who has in the past found other flaws with Apple’s software.

Copyright © 2009 v3.co.uk
Email a Friend Email this
Print Page Print this
Tweet This Tweet this
Feedback Send us your tips


Ads by Google

Comments: 3
Thoughts on this article? Add a comment below.
ENFUSIA
Jan 16, 2009 1:05 PM
LOL

Well there goes any Mac users arguments against Win OS's. That's one flaw picked up so far with probably many more to come. Maybe people should spend some time scrutinising Mac a little more and see what they find.....


Comment made about the PC Authority article:
Serious flaw found in Safari?
A researcher has found a flaw that would allow hackers to steal information from those using Mac OS X 10.5, aka Leopard, or Safari for the PC.

What do you think? Join the discussion.
Seach
Jan 19, 2009 10:48 PM
That's just one reason why I won't touch the MAC or Leopard OS..
Slatts
Jan 19, 2009 11:20 PM
I wonder if Safari's bastard child (Chrome) is also open to this vulnerability.8-[
It was developed from the same code and shared the early Safari carpet bombing vulnerability.
Anybody heard anything?
Login or register to submit a comment.
 

Top Stories

Box battle: Telstra takes on TiVo and Foxtel with T-Box trial in Melbourne
It's not quite Foxtel IQ and it's isn't TiVo either. The T-Box lets Telstra users watch movies and TV from the Bigpond site, as well as record and watch digital TV
 
5 More Free Linux Apps You Can't Do Without
More digital Swiss Army knife software, including Linux utilities and tools that are so useful you won't know how you ever did without them
 
Microsoft delivers Office 2010 public beta
Vendor details editions for Office 2010 along with application virtualisation for testing.
 


 
Intel
 
 
LogMeIn
 
 
Amazing Dell Coupons now available
 
Discover Apple