1. Home
  2. Computing & Technology
  3. Web Browsers
Scott Orgera
Scott's Web Browsers Blog

By Scott Orgera, About.com Guide to Web Browsers

iPhone Browser Vulnerable to Phishing Attacks

Thursday July 24, 2008

A URL Spoofing vulnerability in the iPhone's Mail and Safari browser applications can be exploited to conduct phishing attacks. According to security researcher Aviv Raff, a specially crafted malicious URL could appear in the device's Mail application as if it were pointing to a trusted domain. If a user clicked on this spoofed URL it would then be displayed intact in Safari's address bar, giving he or she the impression that they were visiting a safe and secure Web page when in fact they may be a step away from becoming a phishing victim.

Raff has confirmed that iPhones running firmware version 1.1.4 as well as the new 2.0 release are affected. Earlier versions may also be at risk but that is unconfirmed thus far. Technical details of the vulnerability are being withheld by Raff until Apple, who has acknowledged the issue, has delivered a fix. In the meantime, it is recommended that you avoid clicking on any links within the device's Mail application. If you need to visit a specific URL, enter it manually in Safari's address bar.

(Photo © Getty Images - #72966630/David Paul Morris/Stringer)

Comments

No comments yet. Leave a Comment

Leave a Comment

Line and paragraph breaks are automatic. Some HTML allowed: <a href="" title="">, <b>, <i>, <strike>

Explore Web Browsers
About.com Special Features

The Best Web Trends of the Decade

A look back at the best innovations, ideas and technologies over the last 10 years, More >

Family Tech Center

Stay connected and entertained with reviews on tips on the latest HDTVs, cellphones and more. More >

  1. Home
  2. Computing & Technology
  3. Web Browsers

©2010 About.com, a part of The New York Times Company.

All rights reserved.