Newsletters

Select newsletters below and click the button to sign up!

Boston News NY News
DC News Internet Daily
SiliconValley News
InternetNews Business Report




Become a Marketplace Partner



Partner With Us














 

Internetnews Bloggers

Recent Entries

Archives

September 2009
Sun Mon Tue Wed Thu Fri Sat
    1 2 3 4 5
6 7 8 9 10 11 12
13 14 15 16 17 18 19
20 21 22 23 24 25 26
27 28 29 30      

Monthly Archives

Search The Blog

Eye of the Needle by David Needle (bio)

Insights from Silicon Valley and beyond



Apple's iPhone phishing expedition comes up short?

Security researchers are warning that the recent 3.1 update to Apple’s iPhone software doesn’t prevent phishing attacks consistently or as well as the company’s desktop version of the Safari browser. The anti-phishing feature should warn users when they may be visiting known phishing sites designed to illegally capture user’s personal information.

But researchers at both ZScaler and Intego say they were able to visit a number of known phishing sites using an iPhone and the Mobile Safari browser without any warning.

Conversely, the desktop version of Safari blocked access to those same sites. Both companies listed examples in blog posts of phishing sites they were able to visit unimpeded. In one example, Intego says it was able to visit a phony PayPal site on the iPhone that was blocked by Safari on Mac OS X.

“Apple released iPhone OS 3.1 and once again specifically called out phishing protection,” said Zscaler’s Michael Sutton in a blog post. “In fact, within the Safari settings, there is now a Security section with a Fraud Warning option.

“By selecting this option, which is on by default, you will be “warn[ed] when visiting fraudulent websites”. Sounds great. The problem? It doesn’t work.”

| Comments (0) | TrackBacks (0) | Share

0 TrackBacks

Listed below are links to blogs that reference this entry: Apple's iPhone phishing expedition comes up short? .

TrackBack URL for this entry: https://swarm.jupitermedia.com/mt-tb.cgi/8896

Leave a comment