Mobile Safari Anti-Phishing Feature Criticized As Being Inconsistent

Discussion in 'iOS Blog Discussion' started by MacRumors, Sep 10, 2009.

  1. macrumors bot

    MacRumors

    Joined:
    Apr 12, 2001
    #1
    [​IMG]

    As part of the iPhone/iPod Touch 3.1 Software update released yesterday during Apple's rock and roll event, Mobile Safari gained anticipated anti-phishing features currently present in its desktop version. However, security firm Intego is criticizing the feature's inconsistency as being worse than if the feature hadn't been included at all.

    The desktop version of Safari uses Google's Safe Browsing API. It's unclear what technology the Mobile Safari browser uses and what the exact reason is for the inconsistent results, however Intego as well as other researchers promise to continue to investigate the issue.

    Article Link: Mobile Safari Anti-Phishing Feature Criticized As Being Inconsistent
     
  2. macrumors 604

    SFStateStudent

    Joined:
    Aug 28, 2007
    Location:
    San Francisco California, USA
    #2
    I'm on that bus....:eek:
     
  3. macrumors 68020

    spillproof

    Joined:
    Jun 4, 2009
    Location:
    USA
    #3
    This not like Apple. I just checked my bank accounts today! I could be flat broke right now and I wouldn't even know it!
     
  4. macrumors member

    Joined:
    Aug 7, 2008
    #4
    whinge bloody whinge, im sure if theres a problem apple will be on it soon
     
  5. macrumors 6502a

    Joined:
    Apr 25, 2008
    #5
    in the bigger scheme of things don't blame apple blame the SOBS that are trying day and night to get your personnel information. And for the record, apple never said the Mac couldn't get viruses. Never! It has been the overzealous apple community touting that BS and getting all them apple converts all hyped up. Now some of the converts are questioning their decision to go apple. Meh!
     
  6. macrumors 601

    macduke

    Joined:
    Jun 27, 2007
    Location:
    Central U.S.
    #6
    You must be joking, but in case you aren't, here goes:

    Say you have accounts at US Bank. If you go to usbank.com, you will not have any problems. If you get an email saying it's from your bank and it's not, and you click a link which opens into a website that is not your bank, then you would have to be an idiot to enter your personal information.

    Bottom line: don't be a fool. This feature is only for morons. If you use your bookmark for your bank's website, or even type it in manually, there is no reason to need the anti-phishing measures.
     
  7. macrumors 68020

    spillproof

    Joined:
    Jun 4, 2009
    Location:
    USA
    #7
    haha yes, to an extent. As I just did a reset and lost all my bookmarks, I had to manually typed the url in today over my school's non-encrypted wifi network, then register the "new computer" to my account.
     
  8. macrumors 6502a

    Joined:
    Jan 29, 2003
    Location:
    Florida
    #8
    I agree. Those SOBS at the IRS (or HMRC/Inland Rev etc) are always trying to get my personal info and my money. ;-)

    Safari didn't throw up a warning for all those .gov sites.


     
  9. macrumors 65816

    wackymacky

    #9
    Given that most people know that they should type url's fir their banks etc rather than clicking on links, I'm not sure how bigger problem this is.
     
  10. Editor emeritus

    longofest

    Joined:
    Jul 10, 2003
    Location:
    Falls Church, VA
    #10
    It's best just to be aware. Better for the user to be aware that the feature isn't working properly so they shouldn't rely on it.
     
  11. Administrator

    Doctor Q

    Staff Member

    Joined:
    Sep 19, 2002
    Location:
    Kepler-452b
    #11
    I don't think I'd turn complacent just because a non-foolproof feature was assisting me in being careful, as a convenience. This kind of feature can't be foolproof anyway.
     
  12. macrumors regular

    Kevster89

    Joined:
    Oct 14, 2008
    #12
    ^x2

    People have their identity and financial records stolen mainly because of stupid decisions like actually believing emails that say "Your account has been temporarily deactivated and we need your credit card number and SSN to reactivate it."

    I have gotten this kind of email many times and it always makes me wonder how many people received the same exact email and actually fell for the scheme...

    Be smart - rely on common sense, not on a newly implemented anti-phishing feature
     

Share This Page