Cybersecurity

Apple fixes Hide My Email vulnerability for iCloud+ users

1 min read

Apple fixes Hide My Email vulnerability for iCloud+ users
Photo: Markus Spiske · Unsplash
0 0
XWhatsAppTelegramLinkedIn

Apple has reportedly patched a security flaw in its Hide My Email feature that could have exposed users' real email addresses. The vulnerability, discovered by security researcher Mysk, allowed websites to bypass the privacy tool and access the actual email linked to an iCloud+ account. Hide My Email is designed to let users generate random, forwarding email addresses to protect their personal inboxes from spam and tracking. The bug meant that when a user signed in to a website using their Apple ID, the site could potentially retrieve the user's true email address, undermining the entire purpose of the feature. Mysk reported the issue to Apple in late 2023, and the company has now released a fix as part of an iOS update. The exact date of the patch was not disclosed, but users are advised to update their devices to the latest version of iOS to ensure protection. This incident highlights ongoing challenges in balancing convenience and privacy in Apple's ecosystem, and it may prompt further scrutiny of similar features across the tech industry.

Sources

Report / request removal

Related

Comments

No comments yet. Be the first.