Search Disaster Preparedness Blog

Free 30-Day Trial -  Download Now
Protect all your
mission-critical DATA!


Automatic Offsite Backups
Fast. Secure. Reliable.
No Credit Card Required
Free 24/7 Phone Support
Starting under $10/mo
NEVER lose data to hard drive crash, accidental changes & deletions, file corruption, fire, flood, theft, viruses, etc.
Award-winning backup service
1,000s of business clients

Remote file access, versioning, secure file sharing & more
World-class, mirrored underground data centers
bank-level encryption
 

« What Does Preparedness Mean To You? Tell Me and You May Win A Prize | Main | Cyber Warfare Takes Another Possible Leap Forward, Stuxnet Worm Infecting SCADA Systems and Hit’s Iranian Nuclear Facilities Hard »
Monday
Sep272010

Autofill Bug In Safari Exposes Personal Information

Apple has left an autofill bug in Safari unpatched that could potentially expose personal information you would never intend for anyone else to see.

Apples Autofill feature allows you to quickly fill out forms that you have previously entered, including credit card information and social security numbers.

A security expert has figured out a way of getting that information by tricking you to hit two keys: the "U" key and the "tab" keys. In theory you could place a hidden form behind a game on a web page that utilizes these keys and tricks you into filling out the form, and stealing your information.

Jeremiah Grossman discovered the bug and you can see a video of the flaw being demonstrated on his site under his entry: The Safari AutoFill Hack Lives!

PrintView Printer Friendly Version

EmailEmail Article to Friend

Reader Comments (5)

Nice information, many thanks to the author. It is incomprehensible to me now, but in general, the usefulness and significance is overwhelming. Thanks again and good luck!

September 30, 2010 | Unregistered CommenterSeattle DUI Attorney

Thanks for the informative post and for actually replying to your readers’ comments. That’s something I don’t see very many blog owners doing and that makes me frustrated. Keep up the good work and I’ll continue coming back here to learn more....

October 20, 2010 | Unregistered Commenterian

Thank you Ian. I try to interact with all my readers, especially the ones that take the time to leave a comment or two. It makes a great place to open a dialog with your readers, I think more people should do it.

October 21, 2010 | Registered CommenterKeith Erwood

Nice information very nicely said and niche content thans for sharing this...

October 27, 2010 | Unregistered Commentercreditcardrays

This is one of several problem apple has thanks for making us aware of this flaw; i think people should not use those unprotected softwares.

November 8, 2010 | Unregistered CommenterDebt Help

PostPost a New Comment

Enter your information below to add a new comment.

My response is on my own website »
Author Email (optional):
Author URL (optional):
Post:
 
All HTML will be escaped. Hyperlinks will be created for URLs automatically.