Dot-Mac Security Issue

Spread the love

Warning to Mac Users: Security Flaw with .Mac:

“The de facto online connectivity software sold along with many Apple computers, .Mac, has a Web interface through which users can check their ‘iDisk’ while away from their own computer. However, there is no Log-Out button in this Web interface, so most users just close the browser and walk away… not realizing that their iDisk has been cached by the browser and that anyone who wants to can open up the browser, go back to the link in History, and get into their iDisk completely logged in. From here, files can be downloaded and/or deleted. This seems like a minor security flaw via bad interface design, and podcaster Klaatu (of thebadapples.info) posted this on the discussion.apple.com site, only to have his post removed by Apple. Furthermore, feedback at apple.com/feedback has gone unanswered. The problem remains: there is no way for the average computer user to log-out of their iDisk on public computers. A quick review of any public terminal’s browser history could bring up all kinds of interesting things.”

[source]

Have you read the breakthrough novel of the year? When you are done with that, try:

In Search of Sungudogo by Greg Laden, now in Kindle or Paperback
*Please note:
Links to books and other items on this page and elsewhere on Greg Ladens' blog may send you to Amazon, where I am a registered affiliate. As an Amazon Associate I earn from qualifying purchases, which helps to fund this site.

Spread the love

One thought on “Dot-Mac Security Issue

Leave a Reply

Your email address will not be published. Required fields are marked *