• Hype
  • Murai
  • Lipstiq
  • Varnam
  • Hangat
  • Autofreaks
Lowyat.NET
  • News
    • Lifestyle
    • Computing
    • Hardware
    • Internet
    • Rumours & Leaks
    • Software
  • Forums
    • Kopitiam
    • Tradezone
    • Property Talk
    • Finance & Business
    • Fast and Furious
  • Gaming
    • PC Gaming
    • Console
    • Mobile Gaming
    • Esports
  • Mobile
    • Apps
    • OS
    • Tablets
    • Phones
    • Telco
      • Celcom
      • DiGi
      • Maxis
      • Tune Talk
      • U Mobile
      • Buzzme
  • Pricelists
    • Compu-zoneUpdated
    • ViewnetUpdated
    • Sri ComputersUpdated
    • StartecUpdated
  • More
    • Automotive Tech
    • Drone
    • Enterprise
    • Entertainment
    • Fashion
    • E-Hailing
    • Wearables
No Result
View All Result
Lowyat.NET
  • News
    • Lifestyle
    • Computing
    • Hardware
    • Internet
    • Rumours & Leaks
    • Software
  • Forums
    • Kopitiam
    • Tradezone
    • Property Talk
    • Finance & Business
    • Fast and Furious
  • Gaming
    • PC Gaming
    • Console
    • Mobile Gaming
    • Esports
  • Mobile
    • Apps
    • OS
    • Tablets
    • Phones
    • Telco
      • Celcom
      • DiGi
      • Maxis
      • Tune Talk
      • U Mobile
      • Buzzme
  • Pricelists
    • Compu-zoneUpdated
    • ViewnetUpdated
    • Sri ComputersUpdated
    • StartecUpdated
  • More
    • Automotive Tech
    • Drone
    • Enterprise
    • Entertainment
    • Fashion
    • E-Hailing
    • Wearables
No Result
View All Result
Lowyat.NET
No Result
View All Result
Home Mobile Phones iPhone

Developer Discovers iOS Flaw that Tricks Users to Give Away Apple ID Password

by Huei Song
October 11, 2017
Share on WhatsappShare on TelegramThreads

If you are an iOS user, you would definitely have come across the pop up dialog above at some point. The prompt to key in your password for your Apple ID tied to the device can appear for various reasons, like updating iOS, when certain apps require access to iCloud, or when making in-app purchases. However, it has been discovered that hackers can use this method to steal passwords.

Developer Felix Krause recently found that the popup dialog could easily be replicated. A false password prompt looks identical to the real thing, and can easily trick even the most tech-savvy individuals. We are all so used to seeing the prompt asking for our password that we just key in the details without any hesitation. As Krause says, “Just ask your users politely, they’ll probably just hand over their credentials, as they’re trained to do so.”

Fake iOS Password Prompt

Krause says that the problem has been around for many years. The reason for publishing his finding is to hopefully get Apple to close the loophole. So, what can you do to protect yourself now? Here are some suggestions by the developer:

How can you protect yourself

  • Hit the home button, and see if the app quits:
    • If it closes the app, and with it the dialog, then this was a phishing attack
    • If the dialog and the app are still visible, then it’s a system dialog. The reason for that is that the system dialogs run on a different process, and not as part of any iOS app.
  • Don’t enter your credentials into a popup, instead, dismiss it, and open the Settings app manually. This is the same concept, like you should never click on links on emails, but instead open the website manually
  • If you hit the Cancel button on a dialog, the app still gets access to the content of the password field. Even after entering the first characters, the app probably already has your password.

Check out Felix Krause’s blog for the full explanation of the flaw.

RELATED:  Apple Business Consolidates The Brand's Business-Focused Offerings

(Source: Felix Krause via: 9to5Mac)

Filed Under AppleiOSiOS Bugios flawios securityios security issues
Updated 10:42 am, Wed, 11 October 17
http://lowy.at/UCw3i
SendShareShareShare2Tweet1

Follow us on Instagram, Facebook, Twitter or Telegram for more updates and breaking news. 

No Result
View All Result

TRENDING THIS WEEK

  1. 1
    Smartwatches

    REDMI Watch 6 To Launch Globally With 12-Day Battery Life

  2. 2
    Streaming

    YouTube Premium Lite Reportedly Rolling Out In Malaysia

  3. 3
    Banking

    OCBC And UOB Malaysia Allegedly Hit By Data Breach Claims

  4. 4
    Mobile Phones

    realme Confirms New C100 Series Smartphones For Malaysia

  5. 5
    E-Wallet

    TNG eWallet To Discontinue Auto Reload, Quick Payment Via Debit Card Starting 13 May 2026

NETWORK

  • Hype
  • Murai
  • Lipstiq
  • Varnam
  • Hangat
  • Autofreaks

ABOUT

  • Advertise
  • Careers
  • Privacy Statement
  • Editorial Policy
  • Terms of Use
  • Contact Us

©2026 VIJANDREN RAMADASS. ALL RIGHTS RESERVED.

No Result
View All Result
  • News
  • Forums
  • Laptops
  • Telco
  • Mobile
  • Gaming
  • Fintech
  • Artificial Intelligence
  • Cryptocurrency
  • Cyber Security
  • Hybrid Vehicles
  • Advertise with Us

©2026 VIJANDREN RAMADASS. ALL RIGHTS RESERVED.

No Result
View All Result
  • News
  • Forums
  • Laptops
  • Telco
  • Mobile
  • Gaming
  • Fintech
  • Artificial Intelligence
  • Cryptocurrency
  • Cyber Security
  • Hybrid Vehicles
  • Advertise with Us

©2026 VIJANDREN RAMADASS. ALL RIGHTS RESERVED.