• 中文版
  • BM
  • News
  • Deals
  • Reviews
    • First Impressions
    • Hands-on
    • Comparisons
  • Tech
    • Mobile
    • Computers
    • Cameras
    • Wearables
    • Audio
    • Drones
  • Telco
    • Celcom
    • Digi
    • Maxis
    • Time
    • Tune Talk
    • U Mobile
    • Unifi
    • Yes
  • Cars
  • Contribute
  • Jobs
Menu
  • 中文版
  • BM
  • News
  • Deals
  • Reviews
    • First Impressions
    • Hands-on
    • Comparisons
  • Tech
    • Mobile
    • Computers
    • Cameras
    • Wearables
    • Audio
    • Drones
  • Telco
    • Celcom
    • Digi
    • Maxis
    • Time
    • Tune Talk
    • U Mobile
    • Unifi
    • Yes
  • Cars
  • Contribute
  • Jobs
Search
  • Tech
    • News
    • Mobile
    • Computers
    • Cameras
    • Wearables
    • Audio
    • Drones
  • Telco
    • Celcom
    • Digi
    • Maxis
    • Time
    • U Mobile
    • Unifi
    • Yes
  • Reviews
    • First Impressions
    • Hands-on
    • Comparisons
  • Buyer’s Guide
  • Opinions
  • Digital Life
  • Video
  • Deals
  • How-To
  • Cars
  • Bahasa Melayu
  • EV
  • Contribute
  • Advertise
Menu
  • Tech
    • News
    • Mobile
    • Computers
    • Cameras
    • Wearables
    • Audio
    • Drones
  • Telco
    • Celcom
    • Digi
    • Maxis
    • Time
    • U Mobile
    • Unifi
    • Yes
  • Reviews
    • First Impressions
    • Hands-on
    • Comparisons
  • Buyer’s Guide
  • Opinions
  • Digital Life
  • Video
  • Deals
  • How-To
  • Cars
  • Bahasa Melayu
  • EV
  • Contribute
  • Advertise
Search
Close
Home Digital Life

This bug leaks your iPhone’s web browser history, even on Private Browsing

  • BY Redza Dzafri
  • 17 January 2022
  • 6:02 pm
  • Comment
Share on FacebookShare on Twitter

A serious bug in Safari 15 was found to be able to leak your recent browsing activity and your Google account information such as your User ID and profile photo. This bug was found by FingerprintJS and is caused by the way Apple uses an API called IndexedDB. Not only does this affect Safari on macOS, but it also affects every browser on iOS and iPadOS 15.

To make it brief, Apple implemented IndexedDB in such a way where websites can see the name of other websites and other details when it shouldn’t be able to do that. When you use sites that use your Google account, like YouTube, it makes it so that other tabs and windows can see your unique Google User ID. With this ID, you can look up someone’s profile picture as well.

If you want to see it working in action, you can visit safarileaks.com, a website made by FingerprintJS that demonstrates how the vulnerability works. Of course, you need to open it in Safari 15 on macOS, or any browser on iOS and iPadOS 15.

I tested it with Safari 15 on macOS and the website revealed that five database names were being leaked. I also tested it on the Google Chrome app on my phone and got similar results.

If you open up a new tab with something like YouTube, it will detect your Google User ID and show what hackers will be able to see, including your profile picture. Other affected websites include but are not limited to Bloomberg, Slack Web, Google Calendar, Dropbox, Instagram, Netflix, Twitter, and WhatsApp Web.

The bug was reported on November 28th 2021, but as of January 17th 2022, Apple has yet to fix it. According to FingerprintJS, it also affects Private Browsing. If you’re concerned about this, you can use another browser on macOS like Chrome, Firefox, or my personal recommendation Brave. As for iOS and iPadOS users, just be careful and try not to visit any sketchy sites. That’s all you can do.

[ SOURCE ]

Tags: ApplegoogleiOSiPadOSmacOSSafarisafari 15
Redza Dzafri

Redza Dzafri

POPULAR

Upgraded To a New Phone? Cool. But When Was the Last Time you Upgraded your Shaver?

November 10, 2025

5 Reasons Every Home Should Have a Smart Security System

November 11, 2025

Solar ATAP: The new solar programme for consumers will only start in 2026

December 2, 2025

This bug leaks your iPhone’s web browser history, even on Private Browsing

January 17, 2022
Perodua QV-E EV

Perodua QV-E is now official: Electric sportback with 201hp, 445km NEDC range, priced at RM80k not inclusive of battery subscription

December 1, 2025

GrabRewards is now GrabCoins: Now with even more ways to earn and save

November 17, 2025

Copyright © 2025 · SoyaCincau.com
Mind Blow Sdn Bhd (1076827-P)

  • ADVERTISE
  • DISCLAIMER

Copyright © 2025 · SoyaCincau.com – Mind Blow Sdn Bhd (1076827-P)

  • ADVERTISE
  • DISCLAIMER