Welcome to the Off-Shore Club

The #1 Social Engineering Project in the world since 2004 !

Important Notice:

✅UPGRADE YOUR ACCOUNT TODAY TO ACCESS ALL OFF-SHORE FORUMS✅

[New]Telegram Channel

In case our domain name changes, we advise you to subscribe to our new TG channel to always be aware of all events and updates -
https://t.me/rtmsechannel

OFF-SHORE Staff Announcement:


30% Bonus on ALL Wallet Deposit this week For example, if you deposit $1000, your RTM Balance will be $1000 + $300 advertising wallet that can be used to purchase eligible products and service on forums or request withdrawal. The limit deposit to get the 30% bonus is $10,000 for a $3000 Marketplace wallet balance Bonus.

Deposit Now and claim 30% more balance ! - BTC/LTC/XMR


Always use a Mixer to keep Maximum anonimity ! - BTC to BTC or BTC to XMR

🗂️Keep in Mind For Years, Apple’s Password Manager Had a Major Security Flaw

Gold

_=*Croft*=_

Business Club
💰 Business Club
USDT(TRC-20)
$0.0
While Apple has offered password management solutions for years, it was only this past fall that the company finally rolled out a dedicated passwords app, appropriately named "Passwords." It's a bit basic, but it's built into the OS, and it gets the job done. (It's also free, which helps.) If you're fully into the Apple ecosystem, it's an easy way to create, store, and access the passwords of your numerous accounts. However, as it happens, Passwords has a critical security flaw that Apple only recently addressed.

Here's the situation: Passwords has a security feature that helps you change an account's password directly within the Passwords app. This is particularly helpful if the app detects that one of your accounts' passwords has been compromised. You can tap on the account, choose "Change Password..." and open an in-app browser that will direct you to the account's website, where you can change your password.

As convenient as this feature is, it contained a significant security risk. As discovered by security researchers with Mysk, whenever you tapped "Change Password..." on an account, Passwords would connect to the site using an unencrypted HTTP protocol, before redirecting to the encrypted HTTPS protocol. This encryption protects your connection between your device and the website you're visiting. Without it, an actor with privileged network access could take over the connection and redirect the link.

Let's say the Passwords app warns you that your Yelp password has been compromised, and you need to change it. No problem: You tap your Yelp account in the app, then choose "Change Password..." However, a bad actor follows your activity, and before the real Yelp website can load, they redirect you to a fake Yelp site. Here, the fraudulent page encourages you to share your sensitive information, and since you think you're visiting the real Yelp site, perhaps you do. And just like that, you've been phished.


As Mysk tells 9to5Mac, “We were surprised that Apple didn’t enforce HTTPS by default for such a sensitive app... Additionally, Apple should provide an option for security-conscious users to disable downloading icons completely. I don’t feel comfortable with my password manager constantly pinging each website I maintain a password for, even though the calls Passwords sends don’t contain any ID.”

This problem isn't contained to the Passwords app, however. According to Mysk, this flaw has existed since Apple rolled out the ability to detect compromised passwords in iOS 14, all the way back in 2020:

How to fix this 'Passwords' security flaw​


Apple quietly addressed this problem with the release of iOS 18.2. That update launched in December 2024, so changes are good you've updated your iPhone since then.

However, if you haven't, you need to update to the latest version of iOS as soon as possible. (As of this article, that's iOS 18.3.2, which coincidentally contains another important security patch.) To update now, head to Settings > General > Software Update, then follow the on-screen instructions to download and install the update.
Full story here:
 

Create an account or login to comment

You must be a member in order to leave a comment

Create account

Create an account on our community. It's easy!

Log in

Already have an account? Log in here.

Friendly Disclaimer We do not host or store any files on our website except thread messages, most likely your DMCA content is being hosted on a third-party website and you need to contact them. Representatives of this site ("service") are not responsible for any content created by users and for accounts. The materials presented express only the opinions of their authors.
🚨 Do not get Ripped Off ! ⚖️ Deal with approved sellers or use RTM Escrow on Telegram

Panel Title #1

Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat.

Panel Title #2

Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat.
Top