Categories: Archived Post

iOS Mail bug allows phishing attacks

Security researcher Jan Soucek discovered an iOS Mail bug a while back that allows attackers to run remote HTML code when an email is opened. What this means is that a malicious user who knows about the bug could create a phishing email that prompts users for their iCloud login. Once the login has been entered, the unsuspecting victim has handed over the keys to everything secured with Apple ID credentials. Here’s Soucek’s demonstration video of the bug in action:

The only way to skirt this issue right now is to be vigilant. If you’re reading mail on your iOS device and a popup asks you to log into a system — iCloud or other — don’t. The bug was initially filed with Apple in January, but the company has not yet fixed this problem. To force the issue and get things fixed as soon as possible, Soucek uploaded the proof of concept code to GitHub.

So once again: if you’re reading mail in the iOS Mail app and you’re asked to log into any system, wait until you’re prompted when you’re out of Mail to be safe. Alternatively, log back into the system through other means, such as Settings.

Steve Sande

Steve is the founder and former publisher of Apple World Today and has authored a number of books about Apple products. He's an avid photographer, an FAA-licensed drone pilot, and a really bad guitarist. Steve and his wife Barb love to travel everywhere!

Recent Posts

Analyst offers color predictions for upcoming iPhone 16 line-up

Analyst Ming-Chi Kuo tweets that the upcoming iPhone 16 Pro and Pro Max will be…

2 hours ago

Apple reportedly planning a new AirTag to be unveiled in 2025

In his latest “Power On” newsletter, Bloomberg’s Mark Gurman says Apple is preparing a new…

11 hours ago

Don’t expect a new Mac Studio or Mac Pro until mid-2025

In his latest “Power On” newsletter, Bloomberg’s Mark Gurman says Apple won’t debut a new…

12 hours ago

I’ve eliminated most of the ads at ‘Apple World Today’, so I hope you’ll support the site

As you’ve probably noticed (at least I hope you have, or else I’ve made a…

2 days ago

Top Apple-related stories this week (May 13-17)

Here are the top Apple-related articles at Apple World Today for the week of May…

2 days ago

Optimizing Time Management: How AI Email Writer Can Help

One of the biggest reasons people are starting to lean on AI for knowledge and…

2 days ago