All the latest UK technology news, reviews and analysis

Security loophole uncovered in FaceTime for Mac

by Shaun Nichols

22 Oct 2010

Be the first to comment

  • Tweet this
FaceTime for Mac

A security flaw has been uncovered in Apple's FaceTime for Mac video chat tool just one day after its introduction.

The application reportedly fails properly to conceal account information relating to the Apple ID service, putting users at risk of account theft in certain situations.

Apple news site Macnotes.de said that, when the FaceTime application is active, user account details, including password and recovery questions, can be accessed without the need to enter authentication information.

Apple introduced a beta version of FaceTime earlier this week for Mac OS X Leopard. The application is expected to be included as part of the Mac OS X Lion release.

The report suggests that a third party could potentially access a machine and take over the Apple ID account of the original user.

Additionally, auto-save components in FaceTime will log password information, allowing a third party to launch the application without entering a password.

The flaw requires physical access to the machine, but could pose a threat to those who use a public system or share their computers with others.

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

Flame virus poll

Are you confident that the UK's IT infrastructure is secure from attack in the wake of the Flame malware revelations?

37%

0%

11%

52%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Symanteccloud

Social networking: a guide for IT managers

Social networking is almost ubiquitous. This white paper examines the benefits and risks and it looks at the different ways companies can reconcile them

Riverbed

Mitigating the risks of IT change

The importance of understanding your infrastructure

Availability & Capacity Lead

About Us WorldPay provides a globally connected, locally...

Change & Configuration Administrator

About Us WorldPay provides a globally connected, locally...

SQL Server Developer - SSIS - Zurich

SQL Server Developer - Our client, an international...

IT Technical Service Delivery Manager / ITIL / Reigate - 65K

IT Technical Service Delivery Manager / ITIL / Reigate...

To send to more than one email address, simply separate each address with a comma.