Blog | G5 Cyber Security

Apple users are vulnerable to sandbox vulnerability

Experts discovered that the sandbox vulnerability affects all apps that use the managed app configuration setting in devices that run older versions of iOS 8.4.1. Kevin Watkins, a security researcher from Appthority, argues that users without iOS 84.4.1 are affected by the vulnerability, CVE-2015-3269. The flaw affects all iOS devices that use managed app settings, meaning that Apple is storing enterprise credentials in a directory that can be read by everyone. Tests conducted by Watkins revealed that medical apps used by doctors were leaking patient data, user names, passwords, authentication tokens, and records.”]

Source: https://securityaffairs.co/wordpress/39489/hacking/apple-sandbox-vulnerability.html

Exit mobile version