<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Appleizd</title>
	<atom:link href="http://appleizd.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://appleizd.com</link>
	<description>Everything Apple. Mac, iPhone, iPad, iPod, How-Tos, Apps and more</description>
	<lastBuildDate>Fri, 23 Mar 2012 14:05:53 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Major Security loophole in Safari</title>
		<link>http://appleizd.com/general/major-security-loophole-in-safari/</link>
		<comments>http://appleizd.com/general/major-security-loophole-in-safari/#comments</comments>
		<pubDate>Fri, 23 Mar 2012 12:01:08 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[General]]></category>
		<category><![CDATA[Mac]]></category>
		<category><![CDATA[iOS]]></category>
		<category><![CDATA[iPhone]]></category>
		<category><![CDATA[iPod]]></category>

		<guid isPermaLink="false">http://appleizd.com/?p=97</guid>
		<description><![CDATA[There is no browser that is totally secure. There is no server that is totally secure. There is no desktop, network or data repository that is fully secure. If you give enough time, money and minds, eventually it can be hacked into.
Having said that, there are some things that one would expect to be, at [...]]]></description>
			<content:encoded><![CDATA[<p>There is no browser that is totally secure. There is no server that is totally secure. There is no desktop, network or data repository that is fully secure. If you give enough time, money and minds, eventually it can be hacked into.</p>
<p>Having said that, there are some things that one would expect to be, at least not vulnerable. One such thing is the browser address bar. We all know about phishing and other stuff, but address bar spoofing is something that is very dangerous.</p>
<p>The latest version of the safari browser running on iOS &#8211; (5.1), has this issue. Users of iPhones, iPads, and iPod touch devices running Safari on iOS 5.1 should beware of this security issue that involves address bar spoofing. </p>
<p>The issue was discovered by David Vieira-Kurz of MajorSecurity.net, and involves &#8220;an error within the handling of URLs when using javascript&#8217;s window.open() method.&#8221;</p>
<p>In other words, when you click something on a page and if the page opens a new window, what you see in the address bar may not be the actual site. We are not even talking about tricky URLs designed to fool naive users (something like www.wellsfargobank.com.loanapplication.mortgage.1.com.au), we are talking about plain url www.apple.com or www.yourbank.com being spoofed. Your address bar can read this, but the actual site can be loaded from another location in an iFrame, looking exactly similar to this.</p>
<p>MajorSecurity.net has this demo page. If you test this on a SAFARI browser running on an iOS 5.1 device you will be able to see the security threat.</p>
<p><a href="http://majorsecurity.net/html5/ios51-demo.html">MajorSecurity.net Demo Page</a></p>
<p>But we went ahead and decided to test this on other environments. The same issue can be replicated on the following</p>
<p>Safari running on any version of iOS.<br />
Safari on iPhone 3GS and iOS 4.<br />
Safari on iPod 2G running iOS 4<br />
Safari on iPhone 4S running iOS 5.0<br />
Safari 4.0.4 running on Mac Snow Leopard 10.6.2<br />
Safari 4 running on 24 inch iMac on snow leopard 10.5.x<br />
<strong>Safari 5.0.6</strong> running on a iMac on Snow Leopard 10.5.8</p>
<p>and so on..</p>
<p>This is quite dangerous and at this point we conclude that this seems to be a problem with Safari browser itself, not the iOS operating system. We will be testing Safari 5 on macs and update this post if there is an issue.</p>
<p><strong>NO ISSUES WITH FIREFOX</strong><br />
On the other hand this demo page does not cause the issue in Firefox 3.6 browser and upwards. Makes you wonder if Firefox is a more secure browser! We are not even considering any version of IE because it is not worth it!</p>
<p>MajorSecurity.net has the following</p>
<blockquote><p>Solution<br />
=============<br />
Users should upgrade to a newer version as far as the vendor has supplied a patch.</p>
<p>Timeline<br />
================<br />
2012-03-01, vulnerability identified in iOS 5.0<br />
2012-03-01, vulnerability reproduced with iOS 5.1<br />
2012-03-02, vendor has been informed<br />
2012-03-03, vendor response<br />
2012-03-20, advisory published</p>
</blockquote>
<p><strong>Update:</strong></p>
<p>Safari 5.0.6 also has this issue. This demo page is loading an iFrame scaled for iOS device, but you can easily change that to fill the entire screen without borders and scrolling, making it appear to be the actual page. </p>
<p>Imagine the nightmare Paypal and Banks have to go through, if a rogue element were to attempt this exploit.</p>
<p>The current update from Apple is 5.1.4 for Safari, which relates to Mac OSX Lion. Not sure if this update fixes this issue for users running the Lion operating system, but there are millions of users who bought a Mac in the last few years, who are likely to be on Safari 5.0.6 and below on Snow Leopard. It is highly likely that most of them did not do a paid upgrade to OSX Lion. In that case there are still potential millions of users who are vulnerable using &#8220;their latest&#8221; available version of Safari. Apple should not leave them behind (assuming Safari 5.1.4 fixes this issue for Lion users). Hopefully we will get a security update from Apple soon! </p>
]]></content:encoded>
			<wfw:commentRss>http://appleizd.com/general/major-security-loophole-in-safari/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Another Steve Jobs in work unseen video</title>
		<link>http://appleizd.com/general/another-steve-jobs-in-work-unseen-video/</link>
		<comments>http://appleizd.com/general/another-steve-jobs-in-work-unseen-video/#comments</comments>
		<pubDate>Mon, 21 Nov 2011 21:48:02 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[General]]></category>
		<category><![CDATA[Steve Job]]></category>

		<guid isPermaLink="false">http://appleizd.com/?p=96</guid>
		<description><![CDATA[This video shows Steve Jobs in action &#8211; from his brainstorming session with NEXT employees. 9to5mac has additional videos!

]]></description>
			<content:encoded><![CDATA[<p>This video shows Steve Jobs in action &#8211; from his brainstorming session with NEXT employees. <a href="http://9to5mac.com/2011/11/20/watch-a-candid-steve-jobs-brainstorming-with-his-team-behind-the-scenes-at-next-video/#more-111250">9to5mac</a> has additional videos!<br />
<iframe width="640" height="480" src="http://www.youtube.com/embed/sOlqqriBvUM" frameborder="0" allowfullscreen></iframe></p>
]]></content:encoded>
			<wfw:commentRss>http://appleizd.com/general/another-steve-jobs-in-work-unseen-video/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Hello CSpire</title>
		<link>http://appleizd.com/apple-news/hello-cspire/</link>
		<comments>http://appleizd.com/apple-news/hello-cspire/#comments</comments>
		<pubDate>Mon, 07 Nov 2011 22:51:21 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Apple News]]></category>
		<category><![CDATA[iPhone]]></category>

		<guid isPermaLink="false">http://appleizd.com/?p=94</guid>
		<description><![CDATA[
Many of us have never heard of this little company before. Now it is time. Last week the big announcement came. No, it has nothing to do with T-Mobile. Check out the magic number 11.11.11. The date they are getting iPhone 4S and they will be the fourth carrier to have the iphone in the [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://appleizd.com/wp-content/uploads/2011/11/cspire.png"><img src="http://appleizd.com/wp-content/uploads/2011/11/cspire-e1320706187696.png" alt="" title="cspire" width="600" height="292" class="alignnone size-full wp-image-93" /></a></p>
<p>Many of us have never heard of this little company before. Now it is time. Last week the big announcement came. No, it has nothing to do with T-Mobile. Check out the magic number 11.11.11. The date they are getting iPhone 4S and they will be the fourth carrier to have the iphone in the US.</p>
<p>T-Mobile is left out and we don&#8217;t know how long they will survive. They are really having their fingers crossed to get gobbled up by AT&#038;T.</p>
]]></content:encoded>
			<wfw:commentRss>http://appleizd.com/apple-news/hello-cspire/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Steve Jobs voice on commercial that never aired</title>
		<link>http://appleizd.com/apple-news/steve-jobs-voice-on-commercial-that-never-aired/</link>
		<comments>http://appleizd.com/apple-news/steve-jobs-voice-on-commercial-that-never-aired/#comments</comments>
		<pubDate>Thu, 06 Oct 2011 12:54:26 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Apple News]]></category>
		<category><![CDATA[Steve Jobs]]></category>

		<guid isPermaLink="false">http://appleizd.com/?p=92</guid>
		<description><![CDATA[Steve,
Now you are on this list &#8211; officially.

]]></description>
			<content:encoded><![CDATA[<p>Steve,<br />
Now you are on this list &#8211; officially.</p>
<p><iframe width="420" height="315" src="http://www.youtube.com/embed/8rwsuXHA7RA" frameborder="0" allowfullscreen></iframe></p>
]]></content:encoded>
			<wfw:commentRss>http://appleizd.com/apple-news/steve-jobs-voice-on-commercial-that-never-aired/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Remembering Steve Jobs</title>
		<link>http://appleizd.com/apple-news/remembering-steve-jobs/</link>
		<comments>http://appleizd.com/apple-news/remembering-steve-jobs/#comments</comments>
		<pubDate>Thu, 06 Oct 2011 02:24:19 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Apple News]]></category>
		<category><![CDATA[Steve Jobs]]></category>

		<guid isPermaLink="false">http://appleizd.com/?p=91</guid>
		<description><![CDATA[
]]></description>
			<content:encoded><![CDATA[<p><object id="flashObj" width="404" height="436" classid="clsid:D27CDB6E-AE6D-11cf-96B8-444553540000" codebase="http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=9,0,47,0"><param name="movie" value="http://c.brightcove.com/services/viewer/federated_f9?isVid=1" /><param name="bgcolor" value="#FFFFFF" /><param name="flashVars" value="videoId=1202794264001&#038;playerID=1813626064&#038;playerKey=AQ~~,AAAAAF1BIQQ~,g5cZB_aGkYZXG-DCZXT7a-c4jcGaSdDQ&#038;domain=embed&#038;dynamicStreaming=true" /><param name="base" value="http://admin.brightcove.com" /><param name="seamlesstabbing" value="false" /><param name="allowFullScreen" value="true" /><param name="swLiveConnect" value="true" /><param name="allowScriptAccess" value="always" /><embed src="http://c.brightcove.com/services/viewer/federated_f9?isVid=1" bgcolor="#FFFFFF" flashVars="videoId=1202794264001&#038;playerID=1813626064&#038;playerKey=AQ~~,AAAAAF1BIQQ~,g5cZB_aGkYZXG-DCZXT7a-c4jcGaSdDQ&#038;domain=embed&#038;dynamicStreaming=true" base="http://admin.brightcove.com" name="flashObj" width="404" height="436" seamlesstabbing="false" type="application/x-shockwave-flash" allowFullScreen="true" swLiveConnect="true" allowScriptAccess="always" pluginspage="http://www.macromedia.com/shockwave/download/index.cgi?P1_Prod_Version=ShockwaveFlash"></embed></object></p>
]]></content:encoded>
			<wfw:commentRss>http://appleizd.com/apple-news/remembering-steve-jobs/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Thank you Steve</title>
		<link>http://appleizd.com/apple-news/thank-you-steve/</link>
		<comments>http://appleizd.com/apple-news/thank-you-steve/#comments</comments>
		<pubDate>Thu, 06 Oct 2011 02:20:06 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Apple News]]></category>
		<category><![CDATA[Steve Jobs]]></category>

		<guid isPermaLink="false">http://appleizd.com/?p=90</guid>
		<description><![CDATA[Thank you so much for everything you were, and still are.
A great mentor and a role model for millions.
You have inspired countless lives. May your spirit rest in peace.
]]></description>
			<content:encoded><![CDATA[<p>Thank you so much for everything you were, and still are.<br />
A great mentor and a role model for millions.<br />
You have inspired countless lives. May your spirit rest in peace.</p>
]]></content:encoded>
			<wfw:commentRss>http://appleizd.com/apple-news/thank-you-steve/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Steve Jobs passed away at 56</title>
		<link>http://appleizd.com/apple-news/steve-jobs-passed-away-at-56/</link>
		<comments>http://appleizd.com/apple-news/steve-jobs-passed-away-at-56/#comments</comments>
		<pubDate>Thu, 06 Oct 2011 02:09:42 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Apple News]]></category>
		<category><![CDATA[Steve Jobs]]></category>

		<guid isPermaLink="false">http://appleizd.com/?p=89</guid>
		<description><![CDATA[The man behind everything that we all came to love so much, has passed away. 
The apple website has the following:
Apple has lost a visionary and creative genius, and the world has lost an amazing human being. Those of us who have been fortunate enough to know and work with Steve have lost a dear [...]]]></description>
			<content:encoded><![CDATA[<p><strong>The man behind everything that we all came to love so much, has passed away. </strong></p>
<p>The apple website has the following:</p>
<p>Apple has lost a visionary and creative genius, and the world has lost an amazing human being. Those of us who have been fortunate enough to know and work with Steve have lost a dear friend and an inspiring mentor. Steve leaves behind a company that only he could have built, and his spirit will forever be the foundation of Apple.</p>
<p>If you would like to share your thoughts, memories, and condolences, please email rememberingsteve@apple.com</p>
<p>Enough said.</p>
<p>The following Steve Jobs speech at the Stanford graduation is one of the greatest speeches ever given by any leader.</p>
<p><object width="640" height="360"><param name="movie" value="http://www.youtube.com/v/UF8uR6Z6KLc&#038;hl=en_US&#038;feature=player_embedded&#038;version=3"></param><param name="allowFullScreen" value="true"></param><param name="allowScriptAccess" value="always"></param><embed src="http://www.youtube.com/v/UF8uR6Z6KLc&#038;hl=en_US&#038;feature=player_embedded&#038;version=3" type="application/x-shockwave-flash" allowfullscreen="true" allowScriptAccess="always" width="640" height="360"></embed></object></p>
]]></content:encoded>
			<wfw:commentRss>http://appleizd.com/apple-news/steve-jobs-passed-away-at-56/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Apple Lets talk iPhone live event coverage</title>
		<link>http://appleizd.com/general/apple-lets-talk-iphone-live-event-coverage/</link>
		<comments>http://appleizd.com/general/apple-lets-talk-iphone-live-event-coverage/#comments</comments>
		<pubDate>Tue, 04 Oct 2011 14:20:57 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[General]]></category>

		<guid isPermaLink="false">http://appleizd.com/?p=88</guid>
		<description><![CDATA[The live stream on this post has been taken down and made private due to exceptionally high traffic. The first 500 users will be given a private link. Please contact us here &#8211; http://appleizd.com/contact/
Thank you
]]></description>
			<content:encoded><![CDATA[<p>The live stream on this post has been taken down and made private due to exceptionally high traffic. The first 500 users will be given a private link. Please contact us here &#8211; http://appleizd.com/contact/</p>
<p>Thank you</p>
]]></content:encoded>
			<wfw:commentRss>http://appleizd.com/general/apple-lets-talk-iphone-live-event-coverage/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>iPad 3 release may be delayed until 2012</title>
		<link>http://appleizd.com/ipad/ipad-3-release-may-be-delayed-until-2012/</link>
		<comments>http://appleizd.com/ipad/ipad-3-release-may-be-delayed-until-2012/#comments</comments>
		<pubDate>Tue, 20 Sep 2011 14:34:59 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[iPad]]></category>
		<category><![CDATA[iPad3]]></category>

		<guid isPermaLink="false">http://appleizd.com/?p=87</guid>
		<description><![CDATA[According to AllThingsDigital, the release of iPad 3 may be delayed until 2012. Many Apple fans have been waiting eagerly to see the new iPad3 with retina display for this holiday season (2011), but their dreams may not come true after all. 
According to the report, from a J.P. Morgan analyst, &#8220;In recent months, there [...]]]></description>
			<content:encoded><![CDATA[<p>According to AllThingsDigital, the release of iPad 3 may be delayed until 2012. Many Apple fans have been waiting eagerly to see the new iPad3 with retina display for this holiday season (2011), but their dreams may not come true after all. </p>
<p>According to the report, from a J.P. Morgan analyst, &#8220;In recent months, there has been rising investor speculation that a new iPad 3 would be launched for the holiday season.”</p>
<p>However, he added: “Our latest research continues to indicate that there is no such device slated for production this year. … There are prototypes in the supply chain related to the next-generation device, but our conversations with industry participants suggest that a new device will not be available until sometime in calendar 2012.&#8221;</p>
<p>So, looks like there will be an iPhone 5 before an iPad 3.</p>
]]></content:encoded>
			<wfw:commentRss>http://appleizd.com/ipad/ipad-3-release-may-be-delayed-until-2012/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>President Obama wants iPad and iPods to be made in America</title>
		<link>http://appleizd.com/apple-news/president-obama-wants-ipad-and-ipods-to-be-made-in-america/</link>
		<comments>http://appleizd.com/apple-news/president-obama-wants-ipad-and-ipods-to-be-made-in-america/#comments</comments>
		<pubDate>Thu, 07 Jul 2011 15:50:38 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Apple News]]></category>
		<category><![CDATA[Videos]]></category>

		<guid isPermaLink="false">http://appleizd.com/?p=85</guid>
		<description><![CDATA[
]]></description>
			<content:encoded><![CDATA[<p><object width='620' height='383'><param name='movie' value='http://www.youtube.com/v/Fe-rIymyxys?version=3&#038;rel=1&#038;fs=1&#038;showsearch=0&#038;showinfo=1&#038;iv_load_policy=1&#038;start=450' /><param name='allowfullscreen' value='true' /><param name='wmode' value='opaque' /><embed src='http://www.youtube.com/v/Fe-rIymyxys?version=3&#038;rel=1&#038;fs=1&#038;showsearch=0&#038;showinfo=1&#038;iv_load_policy=1&#038;start=450' type='application/x-shockwave-flash' allowfullscreen='true' width='620' height='383' wmode='opaque'></embed></object></p>
]]></content:encoded>
			<wfw:commentRss>http://appleizd.com/apple-news/president-obama-wants-ipad-and-ipods-to-be-made-in-america/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

