iCloud Passwords in Mail, Device Passwords, and Safari Passwords

Dan Goodin: The proof-of-concept attack exploits a flaw in Mail.app, the default iOS e-mail program. Since the release of version 8.3 in early April, the app has failed to properly strip out potentially dangerous HTML code from incoming e-mail messages. The proof-of-concept exploit capitalizes on this failure by downloading a form from a remote server … Continue reading iCloud Passwords in Mail, Device Passwords, and Safari Passwords