Search Disaster Preparedness Blog

« What Does Preparedness Mean To You? Tell Me and You May Win A Prize | Main | Cyber Warfare Takes Another Possible Leap Forward, Stuxnet Worm Infecting SCADA Systems and Hit’s Iranian Nuclear Facilities Hard »
Monday
Sep272010

Autofill Bug In Safari Exposes Personal Information

Apple has left an autofill bug in Safari unpatched that could potentially expose personal information you would never intend for anyone else to see.

Apples Autofill feature allows you to quickly fill out forms that you have previously entered, including credit card information and social security numbers.

A security expert has figured out a way of getting that information by tricking you to hit two keys: the "U" key and the "tab" keys. In theory you could place a hidden form behind a game on a web page that utilizes these keys and tricks you into filling out the form, and stealing your information.

Jeremiah Grossman discovered the bug and you can see a video of the flaw being demonstrated on his site under his entry: The Safari AutoFill Hack Lives!

PrintView Printer Friendly Version

EmailEmail Article to Friend

References (1)

References allow you to track sources for this article, as well as articles that were written in response to this article.

Reader Comments (5)

Nice information, many thanks to the author. It is incomprehensible to me now, but in general, the usefulness and significance is overwhelming. Thanks again and good luck!

September 30, 2010 | Unregistered CommenterSeattle DUI Attorney

Thanks for the informative post and for actually replying to your readers’ comments. That’s something I don’t see very many blog owners doing and that makes me frustrated. Keep up the good work and I’ll continue coming back here to learn more....

October 20, 2010 | Unregistered Commenterian

Thank you Ian. I try to interact with all my readers, especially the ones that take the time to leave a comment or two. It makes a great place to open a dialog with your readers, I think more people should do it.

October 21, 2010 | Registered CommenterKeith Erwood

Nice information very nicely said and niche content thans for sharing this...

October 27, 2010 | Unregistered Commentercreditcardrays

This is one of several problem apple has thanks for making us aware of this flaw; i think people should not use those unprotected softwares.

November 8, 2010 | Unregistered CommenterDebt Help

PostPost a New Comment

Enter your information below to add a new comment.

My response is on my own website »
Author Email (optional):
Author URL (optional):
Post:
 
All HTML will be escaped. Hyperlinks will be created for URLs automatically.