Get the latest tech news

Safari Flaw Can Expose iPhone Users in the EU to Tracking


Apple's implementation of installing marketplace apps from Safari is heavily flawed and can allow a malicious marketplace to track users across websites

Apple has introduced a new URI scheme in iOS 17.4 to allow EU users to download and install alternative marketplace apps from websites. To comply with the European Digital Market Act(DMA), Apple had to introduce a new method that allows EU users to download and install alternative marketplace apps from the developers’ websites. It might be tricky to support certificate pinning here because MarketplaceKit might communicate with many servers that can dynamically be changed by the marketplace developer in the.well-known resources.

Get the Android app

Or read this on r/apple

Read more on:

Photo of Safari

Safari

Photo of iPhone users

iPhone users

Photo of safari flaw

safari flaw

Related news:

News photo

All web browsers on iOS are just Safari with different design

News photo

Apple: Mercenary spyware attacks target iPhone users in 92 countries

News photo

iPhone users in 92 countries received a spyware attack warning from Apple