Close Menu
Tech Savvyed
  • Home
  • News
  • Artificial Intelligence
  • Gadgets
  • Apps
  • Mobile
  • Gaming
  • Accessories
  • More
    • Web Stories
    • Spotlight
    • Press Release

Subscribe to Updates

Get the latest tech news and updates directly to your inbox.

What's On

A 100-inch Hisense TV for less than $1,000? Sign me up!

16 May 2025

Exclusive – Diving Deep Into Critical Role’s Daggerheart

15 May 2025

Apple TV+’s latest sci-fi series has debuted with a 98% on Rotten Tomatoes

15 May 2025
Facebook X (Twitter) Instagram
Facebook X (Twitter) Instagram
Tech Savvyed
SUBSCRIBE
  • Home
  • News
  • Artificial Intelligence
  • Gadgets
  • Apps
  • Mobile
  • Gaming
  • Accessories
  • More
    • Web Stories
    • Spotlight
    • Press Release
Tech Savvyed
Home » Apple’s Passwords App Had a Security Flaw That Exposed Users to Phishing Attacks for Three Months
Apps

Apple’s Passwords App Had a Security Flaw That Exposed Users to Phishing Attacks for Three Months

News RoomBy News Room19 March 20252 Mins Read
Share
Facebook Twitter Reddit Telegram Pinterest Email

Apple released a dedicated Passwords app last year, as part of the iOS 18 software update. Instead of a menu inside the Settings app, users can access their passwords and other details via a standalone app. However, the Passwords app had a serious security flaw that exposed users to potential phishing attacks from attackers who were on the same Wi-Fi network. The company recently disclosed that it fixed the security flaw three months after iOS 18 was released.

Apple Fixed Passwords App Vulnerability With iOS 18.2 Update

The iPhone maker recently amended its release notes (via 9to5Mac) for the iOS 18.2 update, which was released in December. The document now includes two entries, both titled ‘Passwords’, that describe fixes for the app. Apple has credited Mysk security researchers Talal Haj Bakry and Tommy Mysk with identifying the security vulnerability.

According to the company’s updated support document, the first patch for the Passwords app on iOS 18.2 fixed two flaws that allowed a user in a privileged network position to leak sensitive information, and alter network traffic. 

The Mysk researchers discovered that Apple’s Passwords app wasn’t using encrypted connections (HTTPS) when fetching details of specific sites, such as site icons. Similarly, password reset pages were loaded over HTTP.

The same flaw would allow an attacker on the same Wi-Fi network to intercept the network request, and direct the device to load a phishing website instead of the legitimate one. If the user trusts the webpage, they might enter their credentials on the fraudulent website.

The cybersecurity firm reported the issue to Apple in September, and Apple’s revised support document reveals that it rolled out fixes for the issue with iOS 18.2 in December. Eligible iPhone and iPad models that are running on iOS 18.2 and iPadOS 18.2 or newer versions should not be vulnerable to the flaw.

Share. Facebook Twitter Pinterest LinkedIn Telegram Reddit Email
Previous ArticleAll Marvel Rivals Galacta’s Cosmic Adventure quests & rewards
Next Article Realme P3 Ultra 5G With MediaTek Dimensity 8350 Ultra SoC Launched in India Alongside Realme P3 5G

Related Articles

Google Gemini Advanced Users Can Now Connect the Chatbot With GitHub

15 May 2025

TikTok Adds Support for AI-Powered Alternative Text and Other Accessibility Features

15 May 2025

OpenAI Expands GPT-4.1 AI Models With Advanced Coding Capabilities to ChatGPT

15 May 2025

Microsoft 365 Apps to Receive Security Updates on Windows 10 Until 2028

14 May 2025

Slack Rolling Out ‘Mark as Read’ Option in Notifications for Its Android App

14 May 2025

Apple Unveils Accessibility Nutrition Labels, Magnifier for Mac, Braille Access and More

14 May 2025
Demo
Stay In Touch
  • Facebook
  • Twitter
  • Pinterest
  • Instagram
  • YouTube
  • Vimeo
Don't Miss

Exclusive – Diving Deep Into Critical Role’s Daggerheart

By News Room15 May 2025

After years of anticipation, Daggerheart is about to be released next week. The tabletop role-playing…

Apple TV+’s latest sci-fi series has debuted with a 98% on Rotten Tomatoes

15 May 2025

OnePlus 13s Colour Options Teased Ahead of Upcoming Launch in India

15 May 2025

Nintendo Store San Francisco Photo Tour

15 May 2025
Tech Savvyed
Facebook X (Twitter) Instagram Pinterest
  • Privacy Policy
  • Terms of use
  • Advertise
  • Contact
© 2025 Tech Savvyed. All Rights Reserved.

Type above and press Enter to search. Press Esc to cancel.