Plugavel.
  • Home
  • Tech
  • Car
  • More
    • Privacy policy
    • About us
    • Contact us
No Result
View All Result
Plugavel.
  • Home
  • Tech
  • Car
  • More
    • Privacy policy
    • About us
    • Contact us
No Result
View All Result
Plugavel.
No Result
View All Result
ADVERTISEMENT

Beware of this flaw in Safari!

17 de January de 2022
in Tech
Une faille dans le moteur de Safari permet aux sites de connaître les autres sites ouverts dans le navigateur. © monsitj, Adobe Stock
ADVERTISEMENT

A flaw has been discovered in WebKit, the rendering engine of Apple’s Safari browser. This exposes the sites to the names of other sites visited in real time, and in some cases even personal identifiers.

You will also be interested


[EN VIDÉO] Kézako: how is data encrypted on the Internet?
Cryptography is the oldest form of encryption. There are traces of its use until 2,000 BC. This technique still used today, especially on the Web, reveals its mysteries on video thanks to the Kézako program from Unisciel and the University of Lille 1.

On their blog official, specialist browser tracking service FingerprintJS unveiled a flaw in the WebKit rendering engine, which affects version 15 of Safari. The problem lies in its implementation ofAPI IndexedDB and has the consequence of allowing websites to know the names of other sites visited.

IndexedDB is a tool present in all browsers which allows sites to store data on the user’s computer. When used correctly, each site only has access to the information it has recorded. However, due to this flaw, each time a site creates a database via IndexedDB, an empty copy is created in all other tabs, Windows and frames of the same session.

No updates yet

The content of the database is therefore not exposed, only the name. However, many sites include their name when creating their database, which is therefore visible to all other sites visited by the user. Additionally, some even include a user ID, as is the case with YouTube. This can therefore make it possible to identify the Internet user, or at least in the case of Google, to retrieve the profile picture. And a site could voluntarily open another site in a frame, without the knowledge of the user, to obtain such information.

It’s not just Safari that’s affected. The flaw also affects third-party browsers on iPhone and iPad given thatApple requires the use of WebKit. the bug was reported on November 28, but Apple has yet to release an update. In the meantime, it is possible to use another browser on macOS, but there is no alternative on iOS and iPadOS.

Interested in what you just read?

.

ADVERTISEMENT
Tags: AppleBewarebrowserscybersecurityfaultflawIndexedDBiOSMacOSSafariWebkit
ShareTweetPin

Related Posts

Les écouteurs et casques Bluetooth en solde © Myst, Adobe Stock
Tech

Sales 2022: prices collapse on Bluetooth headphones and headsets

Wireless headphones and earphones are selling like hot cakes, which isn't surprising given the number of awesome models (and deals!)...

27 de June de 2022
Voir au travers les murs et disposer d’une représentation 3D de ce qu’il se passe derrière, c’est ce que sait faire le Xaver 1000. © Camero-Tech
Tech

The Israeli army will have a system to see through walls

Commissioned by the Israeli army, the Xaver 1000 can detect the presence of life in rooms, the number of people...

27 de June de 2022
Le robot humanoïde serait de taille moyenne humaine et pourrait transporter des charges de plus de vingt kilos. © Tesla
Tech

Elon Musk’s humanoid robot, Optimus, is coming soon

It's official, Elon Musk just confirmed it verbally: Tesla will introduce its first humanoid robot equipped withartificial intelligence during the...

27 de June de 2022
Michelin travaille également sur un pneu increvable qui devrait arriver en 2024. © Michelin
Tech

Hyundai and Michelin will develop eco-responsible tires for electric cars

More and more manufacturers automobileswhich will only be able to sell new non-thermal vehicles in Europe from 2035, are working...

27 de June de 2022
Next Post
Les smartphones Realme aux meilleurs prix sur AliExpress © dontree, Adobe Stock

The 3 Days of Realme Brands: smartphones at the best prices on AliExpress

Bon plan : le PC portable gamer ASUS FX505GT-HN004T © Cdiscount

Winter sales: the ASUS FX505GT-HN004T gaming laptop is discounted on Cdiscount

Recommended

When Belmondo walked into a house in Caterham Seven

When Belmondo walked into a house in Caterham Seven

21 de September de 2021

Formula 1: FIA removes tire rule from Q2

21 de February de 2022
Ionity opens its 100th station and switches to kWh pricing!

Ionity opens its 100th station and switches to kWh pricing!

20 de May de 2022

The iPhone 11 at 1 euro (+8euros/month), it’s possible at Bouygues Telecom!

17 de February de 2022
ADVERTISEMENT

Categories

  • Car
  • Carros
  • Tech
  • Tecnologia
ADVERTISEMENT
  • Home
  • Privacy policy
  • About us
  • Contact us
© 2021 Plugavel - News about technology and cars on one site Plugavel.
No Result
View All Result
  • Home
  • Tech
  • Car
  • More
    • Privacy policy
    • About us
    • Contact us