Search

iOS Users Can Be Easily Tricked Into Revealing Their Apple ID Password: Report

Advertisement
Highlights
  • There is a potential design flaw in iOS
  • The system-level password dialog box can be easily replicated by an app
  • Apple hasn't addressed the matter yet
iOS Users Can Be Easily Tricked Into Revealing Their Apple ID Password: Report

There is a potential design flaw in iOS, Apple's mobile operating system, that allows any developer to recreate a genuine-looking password pop-up menu in their apps, as per s security researcher. The problem? iOS users are accustomed to seeing that pop-up menu at random times, a fact that a rogue developer could abuse. Since there is no way to tell the password dialog created by an app from the system-level pop-up, a user can easily be tricked into sharing their most sensitive information with the fraudulent agent thanks to the spoofing.

The flaw, which has existed for years, was spotted by Felix Krause, an iOS developer. According to Krause, it is very easy to replicate the dialog box. On its part, Apple has over the years done a poor job with how it asks users to interact with the dialog box. Users are used to seeing the box at random hours and entering their details, he said.

ios password dialog box iOS  Security  Mobiles  Apple

Spot the difference. There isn't one.
Photo Credit: Felix Krause

There is no evidence that a developer has ever tried to abuse this flaw, but one can't really tell even if it has happened. The only company that may have some information is Apple, which as usual remains tightlipped. "It is concerning to think that is all it would take to display a convincing dialog," Will Strafach, an iOS hacker and developer, tweeted.

"It's long past time that Apple removes the random password popups that plague iOS. They're a security flaw that should not exist in 2017," Marco Arment, a prominent iOS developer tweeted. "I'm sure whoever's responsible for them has some reasons they think are good for why they need to be there. They're not, and they don't."

As we wait for Apple to do something, Krause has found a stopgap solution that users can use to know when the password dialog they are seeing is genuine. Hit the home button. If it's a system-level dialog, it will stick around. If it's generated by an app, it would go away.

Additionally, "always close the dialog, and open the iCloud settings manually, and only enter [the password] there," Krause said.

For the latest tech news and reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who'sThat360 on Instagram and YouTube.

Further reading: iOS, Security, Mobiles, Apple
 
Show Full Article
Please wait...
Advertisement

Related Stories

Popular Mobile Brands
  1. OnePlus 13T Display Details Revealed Ahead of April 24 Launch
  2. Samsung Galaxy S25 FE Will Reportedly Arrive With This Processor
  3. Honor GT Pro With Snapdragon 8 Elite Chip, 7,200mAh Battery Launched
  4. Apple's iPhone 17e Is Already Nearing Trial Production, Tipster Claims
  5. Realme Buds Air 7 Pro Debuts With Active Noise Cancellation, IP55 Rating
  6. Instagram Launches Edits App with Video Editing Features for Creators
  7. The Future of Note-Taking Is Here-with the Samsung Galaxy Tab S10 FE Series and Built-in AI
  8. Grok Can Now See Your Surroundings and Speak in Five New Languages
  1. New Study Finds Hercules-Corona Borealis Great Wall Bigger and Nearer Than Thought
  2. Ancient Greenland Rocks Found in Iceland Sheds Light on Late Antique Ice Age
  3. SpaceX Sends Europe’s First Reentry Capsule into Orbit on Bandwagon-3 Rideshare Mission
  4. Bitcoin Reportedly Overtakes Google, Amazon, Meta to Become Fifth-Largest Asset by Market Cap
  5. Ghost of Yotei Sets October 2 Release Date, New Trailer Reveals Revenge Story, Pre-Order Details and More
  6. Tesla Says India's 100 Percent Car Tariffs Make Customers Anxious
  7. Apple, Meta Fined as EU Presses Ahead with Tech Probes
  8. Sennheiser HD 505 Over-Ear Headphones With Open-Back Design Launched in India
  9. Motorola’s Upcoming Devices Will Reportedly Feature Perplexity, Microsoft AI Apps
  10. Apple’s New Siri Chief Enlists Vision Pro Talent to Start Comeback Bid
Gadgets 360 is available in
Download Our Apps
App Store App Store
Available in Hindi
App Store
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.
Trending Products »
Latest Tech News »