Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.


Batman

Mad Scientist
30012 posts

Uber Geek
+1 received by user: 6217

Trusted
Lifetime subscriber

Create new topic
ANglEAUT
altered-ego
2436 posts

Uber Geek
+1 received by user: 841

Trusted
Lifetime subscriber

  #2468996 24-Apr-2020 08:08
Send private message

Taken from the linked article:

 

It contains enough limitations to prevent it being widely exploited, according to Jake Moore, a cybersecurity specialist at the internet security firm Eset. Each email would need to be specifically crafted for a single target, rather than a “mass hack” affecting thousands of people, he said

 

Do your own risk assessment first

 

  • Are you a high value target?
  • Can you minimise the use of the mail app instead of replacing it?

 





Please keep this GZ community vibrant by contributing in a constructive & respectful manner.




Handsomedan
7769 posts

Uber Geek
+1 received by user: 7402

ID Verified
Trusted
Subscriber

  #2469012 24-Apr-2020 09:03
Send private message

ANglEAUT:

 

Taken from the linked article:

 

It contains enough limitations to prevent it being widely exploited, according to Jake Moore, a cybersecurity specialist at the internet security firm Eset. Each email would need to be specifically crafted for a single target, rather than a “mass hack” affecting thousands of people, he said

 

Do your own risk assessment first

 

  • Are you a high value target?
  • Can you minimise the use of the mail app instead of replacing it?

 

 

 

I'd love to be a high value target....but alas I am Johnny Public. 





Handsome Dan Has Spoken.
Handsome Dan needs to stop adding three dots to every sentence...

 

Handsome Dan does not currently have a side hustle as the mascot for Yale 

 

 

 

*Gladly accepting donations...


Benjip
977 posts

Ultimate Geek
+1 received by user: 524

ID Verified

  #2469016 24-Apr-2020 09:08
Send private message

Pretty major security flaw. I'd be surprised (and annoyed) if Apple didn't rush out an urgent fix/update for this over the next couple of days, now that it's made the mainstream media.




BlinkyBill
1443 posts

Uber Geek
+1 received by user: 1100
Inactive user


  #2469027 24-Apr-2020 09:24
Send private message

Pretty minor security flaw. I hope Apple roll out a fix for this in a considered and thoughtful way, as a part of the normal cycle of patches. I won’t comment on the sensationalism exhibited by some ...


Benjip
977 posts

Ultimate Geek
+1 received by user: 524

ID Verified

  #2469030 24-Apr-2020 09:32
Send private message

BlinkyBill:

 

Pretty minor security flaw. I hope Apple roll out a fix for this in a considered and thoughtful way, as a part of the normal cycle of patches. I won’t comment on the sensationalism exhibited by some ...

 

 

Considering that one of Apple's major iOS selling points (including entire advertising campaigns built around it) is security and privacy, don't you think this constitutes more than a "pretty minor security flaw"?

 

It's also frustrating for me as someone who designs and builds HTML email templates and newsletters, as iOS Mail is the gold standard in terms of its HTML/CSS capabilities. The last thing I want is people moving to apps like Outlook and Gmail on iOS which butcher HTML/CSS in their rendering of emails.


snnet
1413 posts

Uber Geek
+1 received by user: 556


  #2469034 24-Apr-2020 09:40
Send private message

Benjip:

 

BlinkyBill:

 

Pretty minor security flaw. I hope Apple roll out a fix for this in a considered and thoughtful way, as a part of the normal cycle of patches. I won’t comment on the sensationalism exhibited by some ...

 

 

Considering that one of Apple's major iOS selling points (including entire advertising campaigns built around it) is security and privacy, don't you think this constitutes more than a "pretty minor security flaw"?

 

It's also frustrating for me as someone who designs and builds HTML email templates and newsletters, as iOS Mail is the gold standard in terms of its HTML/CSS capabilities. The last thing I want is people moving to apps like Outlook and Gmail on iOS which butcher HTML/CSS in their rendering of emails.

 

 

I've used outlook on iOS from the start and I have no issue with rendering of HTML/CSS? 


 
 
 

Move to New Zealand's best fibre broadband service (affiliate link). Free setup code: R587125ERQ6VE. Note that to use Quic Broadband you must be comfortable with configuring your own router.
BlinkyBill
1443 posts

Uber Geek
+1 received by user: 1100
Inactive user


  #2469062 24-Apr-2020 10:49
Send private message

Benjip:

 

Considering that one of Apple's major iOS selling points (including entire advertising campaigns built around it) is security and privacy, don't you think this constitutes more than a "pretty minor security flaw"?

 


No.


firefuze
510 posts

Ultimate Geek
+1 received by user: 85


  #2469079 24-Apr-2020 10:59
Send private message

The fix is already there in the 13.4.5 beta. If anyone is that concerned that they can’t wait for a full rollout of the patch then install the public beta, it’s open to anyone.

Benjip
977 posts

Ultimate Geek
+1 received by user: 524

ID Verified

  #2469082 24-Apr-2020 11:04
Send private message

snnet:

 

I've used outlook on iOS from the start and I have no issue with rendering of HTML/CSS? 

 

 

It's likely that you don't know what you're missing out on, which is fine and just means that someone has taken the time to ensure the email degrades gracefully when viewed in a low quality email client/app.

 

Have a look at this chart for reference (with Outlook iOS ranking 13th, with 103/149 HTML/CSS standards adhered to). Outlook iOS doesn't even allow web fonts which is probably the biggest frustration for myself and my clients.

 

It could be worse – Gmail iOS ranks 27/30 with only 56/149 standards adhered to, which is why I'd be disappointed if more people start using it instead of iOS Mail.


snnet
1413 posts

Uber Geek
+1 received by user: 556


  #2469086 24-Apr-2020 11:06
Send private message

I see. I guess it doesn't apply to me as I tend to just delete "newsletters" (spam to me)

 

 


CYaBro
4708 posts

Uber Geek
+1 received by user: 1182

ID Verified
Trusted

  #2469108 24-Apr-2020 11:23
Send private message

Benjip:

 

snnet:

 

I've used outlook on iOS from the start and I have no issue with rendering of HTML/CSS? 

 

 

It's likely that you don't know what you're missing out on, which is fine and just means that someone has taken the time to ensure the email degrades gracefully when viewed in a low quality email client/app.

 

Have a look at this chart for reference (with Outlook iOS ranking 13th, with 103/149 HTML/CSS standards adhered to). Outlook iOS doesn't even allow web fonts which is probably the biggest frustration for myself and my clients.

 

It could be worse – Gmail iOS ranks 27/30 with only 56/149 standards adhered to, which is why I'd be disappointed if more people start using it instead of iOS Mail.

 

 


What do you do for those that use Outlook in Windows?! 🤣





Opinions are my own and not the views of my employer.


 
 
 

Shop now at Mighty Ape (affiliate link).
Benjip
977 posts

Ultimate Geek
+1 received by user: 524

ID Verified

  #2469142 24-Apr-2020 12:01
Send private message

CYaBro:

 

What do you do for those that use Outlook in Windows?! 🤣

 

 

Pray that they will one day upgrade to a modern email client, and smash my head against my desk with every test I send 😩


geekiegeek
2513 posts

Uber Geek
+1 received by user: 625
Inactive user


  #2470390 24-Apr-2020 15:49
Send private message
Create new topic








Geekzone Live »

Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.



Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.