By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
Daily HacklyDaily HacklyDaily Hackly
  • Tech & Digital Trends
  • Entertainment & Lifestyle
  • Money & Smart Living
  • Productivity & Life Hacks
Search
  • Contact
  • Blog
  • Complaint
  • Advertise
© 2022 Foxiz News Network. Ruby Design Company. All Rights Reserved.
Reading: Apple’s Password Management System Exposed to Significant Security Vulnerability for an Extended Period
Share
Sign In
Notification Show More
Font ResizerAa
Daily HacklyDaily Hackly
Font ResizerAa
Search
  • Home
    • Home 4
  • Categories
  • Bookmarks
  • More Foxiz
    • Sitemap
Have an existing account? Sign In
Follow US
  • Contact
  • Blog
  • Complaint
  • Advertise
© 2022 Foxiz News Network. Ruby Design Company. All Rights Reserved.
Daily Hackly > Blog > Tech & Digital Trends > Apple’s Password Management System Exposed to Significant Security Vulnerability for an Extended Period
Tech & Digital Trends

Apple’s Password Management System Exposed to Significant Security Vulnerability for an Extended Period

DailyHackly
Last updated: April 2, 2025 11:05 pm
DailyHackly
Share
Apple’s Password Management System Exposed to Significant Security Vulnerability for an Extended Period
SHARE

Apple’s Passwords App Exposed to Security Risks

Apple has introduced password management solutions for quite some time, but it wasn’t until last autumn that the company unveiled a standalone application dubbed “Passwords.” While it has a simple design, its integration into the operating system makes it functional and accessible. Best of all, it comes at no cost. For users deeply embedded in the Apple environment, it serves as a straightforward method for generating, storing, and managing passwords across various accounts. However, a serious security vulnerability has recently come to light regarding this application.

The application features a function that allows users to change their passwords directly within the Passwords app, which is especially useful when it detects any compromise of an account’s credentials. By selecting the corresponding account and choosing the “Change Password…” option, users can access an in-app browser that navigates to the account’s official site for password modification.

Although this functionality appears practical, it has revealed a considerable security concern. Researchers at Mysk found that when a user clicks “Change Password…” for an account, the app initially connects to the website via an unencrypted HTTP link before switching to a secure HTTPS protocol. This encrypted layer is crucial for safeguarding the data exchanged between the user’s device and the website. Without this safeguard, someone with network access could potentially hijack the session and reroute the user.

Consider a scenario where the Passwords app alerts a user about a breach of their Yelp password, prompting the need for a change. The user might tap on the Yelp entry and select “Change Password…,” unaware that a malicious individual could be monitoring this action. Instead of reaching the legitimate Yelp site, they could be redirected to a counterfeit version, designed to extract sensitive personal information. This could easily lead to a successful phishing attempt.


According to Mysk, as reported to 9to5Mac, “We were surprised that Apple’s system did not enforce HTTPS as the default for such a critical application… Moreover, Apple should consider offering an option to disable icon downloading entirely for users prioritizing security. I find it unsettling that my password manager is continually accessing every site where I have an account, despite the fact that the data sent by Passwords does not include any identifiers.”

What are your thoughts on this?

This issue is not exclusive to the Passwords app. Mysk noted that this vulnerability has persisted since Apple implemented compromised password detection in iOS 14 back in 2020.


This Tweet is currently unavailable. It might be loading or has been removed.

Steps to Remedy this Passwords Security Vulnerability

This flaw was addressed by Apple through the update released in iOS 18.2, which was made available in December 2024. Chances are, your device has already been updated since then.

If not, it’s crucial to upgrade to the latest iOS version immediately. Currently, iOS 18.3.2 is available and contains additional important security fixes. To update your device, navigate to Settings > General > Software Update and follow the prompts to download and install the latest version.

© 2023 The Original Source. All rights reserved.

You Might Also Like

Understanding Apple’s Decision to Disable Advanced Data Protection in the UK and Its Implications for Users Worldwide

Activate Dark Mode in Safari with ‘Noir’ Enhancement

Google Enhances Search Functionality with Increased AI Integration

Top Four Superior Options to Zelle for Easy Money Transfers

CES 2025: Switchbot Unveils Innovative Robot Vacuum That Doubles as a Versatile Home Assistant

TAGGED:Applecybersécuritéfuite de donnéesgestion des mots de passelogicielsmalwaremenaces en ligneprotection de la vie privéeprotection des donnéesrisque de sécuritésécurité des informationssécurité informatiquesystème de gestion de mots de passetechnologie Applevulnérabilité de sécurité

Sign Up For Daily Newsletter

Be keep up! Get the latest breaking news delivered straight to your inbox.
[mc4wp_form]
By signing up, you agree to our Terms of Use and acknowledge the data practices in our Privacy Policy. You may unsubscribe at any time.
Share This Article
Facebook Copy Link Print
Share
Previous Article Hints and Solutions for the New York Times Crossword: March 13, 2025 Edition Hints and Solutions for the New York Times Crossword: March 13, 2025 Edition
Next Article A Complete Guide to Setting Up the Retro Aesthetic on Your Modern Apple Mac A Complete Guide to Setting Up the Retro Aesthetic on Your Modern Apple Mac
Leave a Comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Stay Connected

248.1kLike
69.1kFollow
134kPin
54.3kFollow
banner banner
Create an Amazing Newspaper
Discover thousands of options, easy to customize layouts, one-click to import demo and much more.
Learn More

Latest News

Anker Soundcore Open Earbuds Reach Unprecedented Low Pricing
Anker Soundcore Open Earbuds Reach Unprecedented Low Pricing
Tech & Digital Trends
Save $200 on This Dyson Air Purifier Today!
Save $200 on This Dyson Air Purifier Today!
Tech & Digital Trends
A Guide to Implementing Two-Factor Authentication with macOS Password Manager
A Guide to Implementing Two-Factor Authentication with macOS Password Manager
Productivity & Life Hacks
Major Announcements and Highlights from Google I/O 2025
Major Announcements and Highlights from Google I/O 2025
Tech & Digital Trends
//

We influence 20 million users and is the number one business and technology news network on the planet

Quick Link

  • Contact
  • Blog
  • Complaint
  • Advertise

Support

Sign Up for Our Newsletter

Subscribe to our newsletter to get our newest articles instantly!

[mc4wp_form id=”1616″]

Daily HacklyDaily Hackly
Follow US
© 2022 Foxiz News Network. Ruby Design Company. All Rights Reserved.
Join Us!
Subscribe to our newsletter and never miss our latest news, podcasts etc..
[mc4wp_form]
Zero spam, Unsubscribe at any time.
Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?