A security researcher says a vulnerability in Apple’s mobile email application could be used to trick someone into divulging their iCloud password. Prague-based Jan Soucek published proof-of-concept code that shows how he could send an email to someone with HTML code that resembles the iCloud login pop-up window. The vulnerability allows remote HTML content to be loaded in an email, which replaces the content of the email message. Apple has taken steps to strengthen the security of iCloud accounts after ones belonging to celebrities were compromised last year.”]
Source: https://www.csoonline.com/article/2934603/apple-mail-flaw-could-pose-risk-to-icloud-passwords.html

