Apple’s Safari SSL Bug – What You Need to Know to Fix
After a couple weeks of travel and lots of great video, I took the week to regroup and make sure everything is posted. Still some CES content that has not gone up.
This episode is not live this week due to time constraints. Meetings in the AM pushed things back. But some great stuff coming down the pike because of it!
Adi has been doing a fantastic job at the helm of the Gaming side of Geekazine. Thanks for helping out! If you would like to write, simply drop me a line!
I got some opportunities this last week, including a chance to go out to the gun range and capture it all on Glass. I talked about it last night on TWIGG with Luke Wallace.
Hotline – 608-205-4378 – geekazine (at) gmail.com
Subscribe to the podcast via: iTunes – TechPodcasts – Stitcher
You can catch me on Twitter @geekazine – Facebook Group – About.Me
Other shows: Day in Tech History – Geekazine Special Media Feed – iPad365 – This Week in Google Glass
Geek Smack! episode 291 Tech News:
- Samsung at MWC – Samsung announced new Galaxy S5, updated watch and health band.
- Elop on XBox – Nokia CEO Stephen Elop will head Xbox and tablet side of Microsoft.
- Ford Blackberry – Possible switch from Microsoft to Blackberry OS in Ford vehicles. Could Ford be looking to buy Blackberry?
- 128 GB MicroSD Card – Sandisk announces a class 10 card that will hold 128 GB for only $119. In perspective, I could hold 75 video episodes of this show.
- T-Mobile Losing – the 4th largest carrier not gaining customers. Time to jump ship.
- Q-Play – TiVo co-founders launch a $49 video streaming device.
- Netflix Mocks Amazon – Drone 2 Home video from Netflix is a new way to get your video to your house.
Geekedia of the Week
Geek Smack! Geek News
- XBox One – Should Microsoft slash the price?
- GMail Unsubscribe – You will soon be able to unsubscribe right from your GMail account.
- Bye @Facebook.com – Facebook nixes the email service. Nobody used it.
- WhatsApp Voice – New Facebook acquisition getting voice call service
- Verizon on Netflix – Heavy Broadband users should pay more. Hello? Why CEO Lowell McAdam doesn’t get it!
- Dailymotion for Sale – Orange is the new Microsoft if they can sell this service to the computer giant
- WinZip Cloud – WinZip moves to the cloud with ZipShare
Geek Smack: Apple Has a Major SSL Issue with Safari on iOS Devices. Here’s how to fix.
I don’t think Barack Obama is going to get an iPhone any time soon…
There was news of a serious vulnerability in Apple’s encryption process on Safari. According to some, the vulnerability deals with SSL – or Secure Socket Layer. When you connect via SSL, your data is supposed to be encrypted when passing through. This really only affects if you used Safari to connect to secure webpages, such as bank accounts or payment pages.
It was found that earlier last week an attacker could capture or modify data of any iOS device. It was an error in the Safari browser code, which nobody knows how it got there. Since then, Apple released an update for iOS7, 6 and Apple TV. No word on if iOS5.1.1 needs an update, as well as OSX software.
This is one of the reasons I don’t prefer Safari as a primary browser. Its not the first time security has been an issue. It wasn’t until a couple years ago and pressure from the public that Safari finally put on security measures.
Now if you have ever done any in-app purchases, you may have been using this bad SSL information. It really depended on how the app handled in-app purchases.
What can you do? You can switch to Chrome as a primary browser on iOS. It won’t be your default browser, but it runs off their own SSL commands.
You can also purchase and maintain your own SSL certificate. Follow this plan on HttpWatch to do so.
Apple has issued an update patch – Update to iOS 7.0.6 now. iOS 6.1.6 is also available and Mavericks updated to 10.9.2 just an hour before I started recording. While it may make more secure, there is always the question of why it wasn’t spotted earlier.
If you cannot update to the latest, you might want to look for alternates if you encrypt email, Facetime or use the Safari browser. Especially if you use their “all in one password” solution.
Geek Smack! is a weekly video show and podcast that comes out every Tuesday evening. Your host: Jeffrey Powers – talks tech news, IT news and geek news for the week. Geek Smack! is ©2014 under a Creative Commons no-deriv license. I miss the rains down in Africa… If you would like more information about what is technology, recent news, Geekazine, and Jeffrey Powers, feel free to contact him. Jeffrey Powers does interviews, just ask!