toad.social is one of the many independent Mastodon servers you can use to participate in the fediverse.
Mastodon server operated by David Troy, a tech pioneer and investigative journalist addressing threats to democracy. Thoughtful participation and discussion welcome.

Administered by:

Server stats:

387
active users

#aapl

1 post1 participant0 posts today

It’s been SEVEN MONTHS, but Tim’s crew is yet to fix the bugs.

Academic researchers discovered a vuln chain in Apple’s #FindMy’ network. Dubbed #nRootTag, it allows hackers to track any Bluetooth device without the owner’s knowledge.

Breaking news: #Apple has finally begun to partially patch the flaws, but only in *some* OS versions. Researchers warn a full fix “will take years,” in part because you can’t update the #AirTag​s themselves. In #SBBlogwatch, we disable dental protocols. @TheFuturumGroup @TechstrongGroup @SecurityBlvd: securityboulevard.com/2025/02/ #AAPL

Security Boulevard · Apple Lets Stalkers Find YOU — ‘nRootTag’ Team Breaks AirTag CryptoDumb Design + Crud Code = Privacy Panic: It’s been SEVEN MONTHS, but Tim’s crew is yet to fix the bugs.

> Apple engineers added code to the Safari's settings page to hide the option to change the default browser if Safari was the default but then to prominently show it if another browser was the default.

open-web-advocacy.org/blog/app

Open Web AdvocacyApple appears to mislead UK Regulator over deceptive default browser user interface - Open Web Advocacy

> Such #attacks are not theoretical. “We've had multiple reports of #malware leveraging this to attack specific #developer tooling frameworks,” wrote David Adrian, a #Google #security developer, on a #Chromium forum in June this year. While attacks are possible on #Apple #Macs and #Linux machines, #Windows systems are not vulnerable because #Microsoft chose to block #0.0.0.0 on its operating system.

archive.is/UCQ79#selection-531

#safari#web#browser