Get a Pentest and security assessment of your IT network.

News

Researcher Discloses ‘Sign in with Apple’ Zero-Day Flaw

An independent security researcher disclosed a zero-day vulnerability in the “Sign in with Apple” feature. If exploited, the vulnerability could have resulted in a full account takeover. The vulnerability has been patched, and Apple says it found no account misuse tied to it. Apple paid Bhavuk Jain a $100,000 bug bounty fee as a reward for the disclosure, which was revealed in a blog post on May 30. JWTs used to authenticate a user when attempting to sign in to a third-party app – a code generated by Apple.”]

Source: https://www.govinfosecurity.com/researcher-discloses-sign-in-apple-zero-day-flaw-a-14365

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Take note, next week update Adobe Reader and Acrobat to fix critical flaws

News

Linux bug leaves 1.4 billion Android users vulnerable to hijacking attacks