News: iOS 11.3.1 Finally Fixed the QR Code-Scanning Vulnerability in Your iPhone's Camera App

News: iOS 11.3.1 Finally Fixed the QR Code-Scanning Vulnerability in Your iPhone's Camera App

One downside to iOS 11's awesome built-in QR code scanner in the Camera app is its only been live for a short while. In its short life, there has already been a security vulnerability discovered that was an issue for at least the last 4.5 months, but Apple has finally patched this weakness with its iOS 11.3.1 update.Ever since at least iOS 11.2.1, if you were to scan a malicious QR code, the popup that shows up in the Camera app could display the URL for what you think you're about to open in Safari when it really would take you to a different domain altogether, which could possibly be a phishing domain meant to look like the domain it said it was sending you to.Don't Miss: iOS 11.3.1 Released with Display Repair Patch & Security Fixes Images by Justin Meyers/Gadget Hacks Phishing sounds scary enough to stop you from using the Camera app for QR codes or at least use a third-party QR code scanner instead, but now you don't have to. Apple quietly fixed this problem with the iOS 11.3.1 update on Tuesday, April 24, with little fanfare. In fact, Roman Mueller, the security consultant who first discovered the issue, also discovered that the fix went live, writing on his Twitter:Yep, iOS 11.3.1 fixed the QR parser bug I reported (CVE-2018-4187). Two interesting things: @wester is also credited for it - bug collision? Would be curious [sic] to know when he reported it. And macOS 10.13.4 also gets a fix for it, wasn't even aware of it being a problem there.And with this my Twitter handle is now posted at an official Apple security advisory page: support.apple.com/en-us/HT208743Weird.
รข€” @faker_/TwitterIf you dive into the 11.3.1 security content log, you might not think Apple implemented the fix. However, look under "LinkPresentation," and you can see what Mueller is talking about here:Impact: Processing a maliciously crafted text message may lead to UI spoofingDescription: A spoofing issue existed in the handling of URLs. This issue was addressed with improved input validation.CVE-2018-4187: Zhiyang Zeng (@Wester) of Tencent Security Platform Department, Roman Mueller (@faker_)Regardless of who ultimately alerted Apple to the QR code-scanner vulnerability, the company has now taken the steps to patch it in not only iOS 11.3.1 but also the first and second beta versions for iOS 11.4. While iOS 11.3.1 released at the time of this article, the first 11.4 beta went live April 2.If you want to use your iPhone's built-in scanner now that the security problems are done with, make sure to check out our iOS 11 Camera guide to learn how it's done.Don't Miss: The 7 Best New Camera Features in iOS 11 for iPhoneFollow Gadget Hacks on Facebook, Twitter, YouTube, and Flipboard Follow WonderHowTo on Facebook, Twitter, Pinterest, and Flipboard
Cover image by Jake Peterson/Gadget Hacks



13 Secret Codes That Unlock Hidden Features on Your Phone. type in the above code, and then the green call button to prompt your IMEI number (or your International Mobile Station Equipment


Relinquishing control of anything important is never easy but, in the right circumstances, doing just that can be so very worthwhile. If you don't believe me, give indoor skydiving a try. Indoor skydiving - or body flying - has all the fun of freefall, while being safely suspended in a lovingly crafted wind-tunnel.
Consumer News Archives - consumerqueen.com


If you've noticed a tiny discolored spot on your computer screen that just doesn't seem to go away, chances are you have a stuck pixel. With modern LCD and OLED screens, there are millions of incredibly small dots (pixels) that make up all of the contents of your display—and within these pixels, there is a set of red, green and blue subpixels.
Pixel 2 XL's blue screen tint likely caused by poorly applied


How to Use the iPhone Keyboard. Every iPhone user needs to know how to use their device's keyboard. It's fairly simple when you know how. Here's the article to teach you those steps. Tap a letter on the keyboard to type a lowercase letter.
About the keyboards settings on your iPhone - Apple Support


The Samsung Galaxy tablet's camera is much more than just a hole in the case. Taking a picture or shooting a video can involve more than just touching an icon. To help you get the most from the tablet's camera, various settings, options, and effects eagerly lurk beneath the Camera app's
How to Take a Screenshot of Your Samsung Galaxy Tab A


How to Fix "Site Is Using Outdated Security Settings" on Browser Browsers have recently increased efforts to encourage administrators to take advantage of updated SSL security in order to better protect sites and users.
Configuration Settings - Cisco Meraki


A crystal radio is a very simple radio that was popular in the early history of radios. It is an electrical circuit that can pick up and play sound from AM radio stations. . Rather than rely on outside electrical sources, like a batteries or plugs, crystal radios get their power directly from the radio wa


Flash Plugin - Keep it up to date and troubleshoot problems The Adobe Flash Player browser plugin lets you view video and animated content in Firefox. This article has information about testing, installing, updating, uninstalling and troubleshooting the Adobe Flash plugin.
How to enable JavaScript in your browser and why


Depending on your device, Android's power (aka restart) menu can range from utilitarian and boring to almost completely useless. Some devices don't even allow you to reboot, let alone reboot to recovery mode or Fastboot, and for such a centralized menu, the glaring lack of Material Design seems like a serious oversight.
PDF restoring it with itunes and redsn0w what do i


Samsung has just rolled out it's latest flagship Samsung Galaxy S5 to over 125 countries few days back. The device, in all it's glory, is available on the shelves now and offers some really nice and cool features that are enough to empty your pockets.
How to Backup / Restore EFS from any Android Samsung Device


The complete steps to taking a screenshot of a window in macOS without a drop shadow are: Open the window you of which you want to take a screenshot. Press Command+Shift+4 on your keyboard (or Command+Shift+Control+4 if you want to save it to the clipboard). Press space bar. The cursor will change from a crosshairs to a camera icon.
How to take screenshot on Mac without drop shadows


Using a phone that hasn't been updated is like playing NBA 2K10 in 2013. Everything works fine, but you're missing all those new features and current rosters. So, when using your Samsung Galaxy S3, try to update as soon as possible to stay current with the Android software.
How to View Notification Details on the Lock Screen of Your

0 comments:

Post a Comment