Australia's Leading Computer Emergency Response Team

Phishing for browsers
Date: 19 June 2009
Original URL: http://www.auscert.org.au/render.html?cid=7066&it=11177

Greetings,

Phishing does not appear to be abating and there is currently a fairly even spread of hooks for customers of different banks.

Apple has this week included a fairly extensive list of security fixes in its release of software updates for iPhone and iPod touch to iPhone OS 3.0.

Apple also released Java for Mac OS X 10.5 Update 4, correcting a similarly hefty volume of vulnerabilities.

Some research from Microsoft has produced an interesting paper pertaining to the implementation of HTTPS in all current popular browsers,
describing various ways and means a man-in-the-middle attack can be executed.

Regards,

Patrick