Apple yesterday released a new version of its flagship browser – 4.0.3 – featuring fixes to stability and compatibility problems, but also to patch six vulnerabilities.
These included buffer overflow issues and a problem with Safari's Top Sites feature, which could facilitate a phishing attack by allowing a "malicious website to promote arbitrary sites into the Top Sites view", said Apple.
Graham Cluley, senior technology consultant for security vendor Sophos, argued that users must update as soon as possible to the new version of Safari, whether they run it on a Microsoft or Apple-based operating system.
"Don't think you can get away with not updating if you run Safari on Windows XP or Vista, because two of the security patches only apply to the version of Apple's browser that runs on Microsoft's operating system," he wrote.
"It doesn't matter whether you run Safari on Mac OS X or Windows computers, it's important that you apply these security patches detailed in a security advisory on Apple's website."
Why does Facebook store "my entire call history with my partner's mum", asks developer who requested his Facebook data
Facebook database included text-message metadata - despite not using Facebook Messenger for SMS
Before Ocado could start selling the technology it had developed to other retailers, it had to tear down and rebuild its own monolithic architecture
Successful attack could result in harm to patients and financial loss, warns NHS governing body
Guccifer 2.0 claimed to be a lone Romanian hacker - until a schoolboy error gave him, her or them away