Get a Pentest and security assessment of your IT network.

News

Researcher Discloses ‘Sign in with Apple’ Zero-Day Flaw

An independent security researcher disclosed a zero-day vulnerability contained in the “Sign in with Apple” feature. The vulnerability has been patched, and Apple says it found no account misuse tied to it. As a reward for the disclosure, Apple paid Bhavuk Jain a $100,000 bug bounty fee. JWTs used to authenticate a user when attempting to sign in to a third-party app – a JWT or a code generated by Apple to create a JWT.”]

Source: https://www.cuinfosecurity.com/researcher-discloses-sign-in-apple-zero-day-flaw-a-14365

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Botnet authors use Evernote account as C&C Server

News

Canadian agency breached as hackers exploit CVE-2017-5638 flaw in Apache Struts 2