Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
Home > News > Apple > Mac

October 21st, 2010, 13:50 GMT · By

FaceTime for Mac OS X Has a Serious Security Flaw - Report

SHARE:

Adjust text size:


FaceTime for Mac promo material
Enlarge picture
A German source is signaling that those who haven’t downloaded FaceTime for Mac just yet may want to hold back on the desire to video chat with their iPhone-wielding friends, as there may be some serious security risks involved.

During yesterday’s Back to the Mac special event held in Cupertino, California, Apple’s CEO confirmed the availability of FaceTime for Mac.

The application effectively enables anyone with a mac running Snow Leopard to use their computer’s iSight camera and mic to talk to their iPhone, iPod touch-equipped friends.

Macnotes.de sounds the alarm over some “security glitches” present in the beta release of FaceTime for Mac.

According to the German web site, those with bad intentions can make use of the user’s Apple ID and reset the password in just a few clicks.

The glitch is exposed once a user logs into FaceTime and glances at the account settings of the used Apple ID. “Username, ID, place and birth date are shown as well as the security question and the answer to it – in plain text, without another password request,” the German source describes the bug.

From here, it’s easy to reset the password to an Apple ID since all the “hacker” needs to know is the user’s birth date and the answer to the security question.

The site appropriately points out that close friends and family members will usually know the answers to such standard queries.

There’s also a problem when the user logs out. As it happens, FaceTime forgets to wipe the password field clean, leaving it there for anyone who may have access to your Mac.

While this person will not be able to read the password itself, they will be able to use that account to place prank FaceTime calls, for example. And we’re assuming you don’t want that with your account.

TELL US WHAT YOU THINK:

5,793 hits · 1 comment · Link to this article · Print article · Send to friend · Subscribe to news

MUST-READ RELATED ARTICLES:


Apple to Developers: Get Your Apps Ready for the Mac App Store

New MacBook Air Needs Software Update Out-of-the-Box

PwnageTool 4.1 Officially Available for Download

Mac OS X Lion Preview: Launchpad, Mission Control

Apple Launches iLife 11 for $49, Intros $6.99 Upgrade Program

READER COMMENTS:


Comment #1 by: Brian on 21 Oct 2010, 14:52 UTC reply to this comment

Wait... seriously? They have to actually be on YOUR computer to do it? That's not hacking, that's just * . Secure your computer better then. They can probably get into MUCH worse on your computer in terms of personal info if you leave an unsecured computer just sitting around.

Copyright © 2001-2012 Softpedia. Contact/Tip us at

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM