A macOS privacy protection bypass flaw could allow potential attackers to access data stored in restricted folders on all Mojave releases up to the 10.14.3 Supplemental Update delivered on February 7. Mac and iOS developer Jeff Johnson discovered a way to bypass these protections in Mojave and allow apps to look inside ~/Library/Safari without acquiring any permission from the system or from the user. In this way, a malware app could secretly violate a user’s privacy by examining their web browsing history.
Source: https://www.bleepingcomputer.com/news/security/privacy-protection-bypass-flaw-in-macos-gives-access-to-browsing-history/

