Triadoro

Triadoro

  • Home
  • TECH
  • EDUCATION
  • MONEY
  • REVIEWS
  • APPS
  • NEWS
    • CREATIVE
    • GEAR
    • INSIGHTS
    • LAUNCH
    • WORLD
  • Contact Us !
Notification Show More
Latest News
What is a Product Launch? Guide from Planning to Execution
LAUNCH
The lockdown has meant new family traditions for all of us
MONEY
How to Save More Money Without Sacrificing Your Lifestyle
Lifestyle
Finding Hope After Loss: Navigating Pregnancy Following Recurrent Miscarriage
Lifestyle
Recognize the distinction between ranging and trending markets.
Trending
Aa

Triadoro

Triadoro

Aa
Search
  • Home
  • TECH
  • EDUCATION
  • MONEY
  • REVIEWS
  • APPS
  • NEWS
    • CREATIVE
    • GEAR
    • INSIGHTS
    • LAUNCH
    • WORLD
  • Contact Us !
Follow US
APPS

IPHONE APPS WITH FAKE LOGIN POP-UPS CAN STEAL YOUR PASSWORDS

Loknath Das
Last updated: 2017/10/12 at 4:00 PM
Loknath Das

Malicious iPhone apps can steal users’s personal information through fake login pop-ups, an Apple iOS app developer has revealed.

The vulnerability, which could potentially allow criminals to gain access to an iPhone owner’s Apple account, was demonstrated by mobile app developer Felix Krause in a blog post Tuesday.

Krause said the security loophole has been in place for many years and has yet to be addressed. A spokesperson for Apple did not immediately respond to a request for comment.

Keep Up With This Story And More By Subscribing Now

The password phishing scam is relatively simple for app developers to activate, and iPhone users may not even realize that they have been targeted.

iphone app steals passwords appleAn Apple iPhone smartphone appears as a silhouette in Zenica, Bosnia, on May 17, 2013. A security vulnerability has been discovered that could allow hackers to steal your passwords.REUTERS/DADO RUVIC

The “Sign in to iTunes Store” popup that appears as a prompt from Apple in some apps can be replicated by developers and placed into the app’s code as an alert.

“Users are trained to just enter their Apple ID password whenever iOS prompts you to do so,” Krause wrote in his blog describing the issue. “Those popups are not only shown on the lock screen, and the home screen, but also inside random apps.

“This could easily be abused by any app…Even users who know a lot about technology have a hard time detecting that those alerts are phishing attacks.”

Krause says users can protect themselves by hitting the home button on their iPhone if they suspect the login pop-up is fake. If pushing the button closes the app, and with it the pop-up, then it was a phishing attack.

So far this is just a proof-of-concept and no instances of the vulnerability have been discovered within iOS apps. In order for it to be remedied, Krause says that Apple could make adjustments to the way apps request Apple ID passwords.

apple iphone 8 plus battery explodingApple launched the iPhone 8 and 8 Plus at the GUM department store in Moscow on September 29.SEFA KARACAN/ANADOLU AGENCY/GETTY IMAGES

For example, rather than use a login pop-up, Apple could request iPhone users to input their username and password into the “settings” section of their phone.

iPhone owners can also enable two-factor authentication in order to access their Apple account.

Krause’s blog comes less than a week after an undocumented feature in the Uber app was uncovered that allowed the ride-hailing company to secretly record the screen of iPhone users.

Mobile security researcher Will Strafach posted the capability—known as “entitlement”—to Twitter, describing its presence in the app’s code as “very unusual.”

“It looks like no other third-party developer has been able to get Apple to grant them a private sensitive entitlement of this nature,” Strafach said. “Considering Uber’s past privacy issues I am very curious how they convinced Apple to allow this.”

[“Source-newsweek”]

TAGGED: Apps, Can, Fake, iPhone, Login, Passwords, Pop-Ups, Steal, with, Your

Breaking News

  • What is a Product Launch? Guide from Planning to Execution
  • The lockdown has meant new family traditions for all of us
  • How to Save More Money Without Sacrificing Your Lifestyle
  • Finding Hope After Loss: Navigating Pregnancy Following Recurrent Miscarriage
  • Recognize the distinction between ranging and trending markets.
  • 8 AI and Data Trends Transforming Financial Services in 2026
  • Pearls Get a Fresh Summer Upgrade—Here’s How to Style Them in 2026
  • DORA Metrics for Leaders: Turning Engineering Data Into Business Decisions
  • Profitable Blog Ideas: How to Turn Your Blog Into a Money-Making Machine
  • Debunked: Three Myths About YouTube Trending YouTube dispels three prevalent
  • Everything You Need to Know About the Event’s Date, Theme, and Significance
  • Is Your GEO Strategy Delivering Results? How to Track and Improve Generative Search Performance
  • March Book Club Pick: The Weathering by Artem Chapeye
  • Revolutionary Habits for Lifelong Health and Real Muscle Gains
  • Know Your Designer: Episode 35 – Saaksha & Kinni
  • Back to School: Smart & Nutritious Lunch Ideas for Kids
  • From Dynasties To Democracy: Politics, Caste & Power Struggles In Rajasthan
  • 2025 Shark Sightings: What The Great Shark Project Reveals About Ocean Life
  • How to Write a Trending Article on your Blog
  • Why tech companies are struggling and how things will improve
  • Healthy Living Made Simple: Small Habits, Big Impact
  • Right to Education: Article 21A, RTE Rules, and the Free and Compulsory Education Act
  • Israel Targets Senior Iranian Leaders in Overnight Strike
  • A Complete Guide to Baisakhi: Traditions, Food, Dance & Festive Fashion
  • Inside the Wedding Style of Allu Sirish & Nayanika Reddy: Where Couture Meets Tradition

Popular Post

  • What is a Product Launch? Guide from Planning to Execution
  • The lockdown has meant new family traditions for all of us
  • How to Save More Money Without Sacrificing Your Lifestyle
  • Finding Hope After Loss: Navigating Pregnancy Following Recurrent Miscarriage
  • Recognize the distinction between ranging and trending markets.
  • 8 AI and Data Trends Transforming Financial Services in 2026
  • Pearls Get a Fresh Summer Upgrade—Here’s How to Style Them in 2026
  • DORA Metrics for Leaders: Turning Engineering Data Into Business Decisions
  • Profitable Blog Ideas: How to Turn Your Blog Into a Money-Making Machine
  • Debunked: Three Myths About YouTube Trending YouTube dispels three prevalent
  • Everything You Need to Know About the Event’s Date, Theme, and Significance
  • Is Your GEO Strategy Delivering Results? How to Track and Improve Generative Search Performance
  • March Book Club Pick: The Weathering by Artem Chapeye
  • Revolutionary Habits for Lifelong Health and Real Muscle Gains
  • Know Your Designer: Episode 35 – Saaksha & Kinni
  • Back to School: Smart & Nutritious Lunch Ideas for Kids
  • From Dynasties To Democracy: Politics, Caste & Power Struggles In Rajasthan
  • 2025 Shark Sightings: What The Great Shark Project Reveals About Ocean Life
  • How to Write a Trending Article on your Blog
  • Why tech companies are struggling and how things will improve
  • Healthy Living Made Simple: Small Habits, Big Impact
  • Right to Education: Article 21A, RTE Rules, and the Free and Compulsory Education Act
  • Israel Targets Senior Iranian Leaders in Overnight Strike

Like Us !

Like Us !

You Might Also Like

APPS

In 2025, the 10 Best Apps for Blogging

May 26, 2025
APPS

In 2025, the four best journaling apps

April 8, 2025

31 Best Blog Apps to Start, Run, and Expand Your Blog

April 1, 2025
APPS

Dozens of new mobile apps are coming to cars with Google built-in

March 24, 2025

Removed from reading list

Undo
Welcome Back!

Sign in to your account

Lost your password?