MyAppleMenu

The HTTP-Intercept Edition Wednesday, March 19, 2025

Apple's Passwords App Was Vulnerable To Phishing Attacks For Nearly Three Months After Launch, by Arin Waichulis, 9to5Mac

Security researchers at Mysk first discovered the flaw after noticing that their iPhone’s App Privacy Report showed Passwords had contacted a staggering 130 different websites over insecure HTTP traffic. This prompted the duo to investigate further, finding that not only was the app fetching account logos and icons over HTTP—it also defaulted to opening password reset pages using the unencrypted protocol. “This left the user vulnerable: an attacker with privileged network access could intercept the HTTP request and redirect the user to a phishing website,” Mysk told 9to5Mac.

Stuff

Pedro Pascal Dances Through Pain In Apple Ad By Spike Jonze, by T.L. Stanley, AdWeek

The visually stunning, cinematic long-form ad reunites Apple with Oscar-winning filmmaker Spike Jonze, who directed the brand’s lauded “Welcome Home” in 2018 with FKA Twigs. Like its predecessor, the new work—called “Someday”—leans heavily on inventive choreography, catchy music, and lavish sets.

Apple Pay Now Available In Puerto Rico, by Juli Clover, MacRumors

Apple Pay today expanded to Puerto Rico, which means iPhone, iPad, and Mac users living in the territory are now able to use ‌Apple Pay‌ for purchases in retail stores and online, even without a mainland credit or debit card.

Our Favorite Free Photo Editor Finally Got The Update It Deserves - And These Are The Top 5 Features Designers Should Know About, by Steve Clark, TechRadar

Top highlights include non-destructive editing when using the most common filters, improved support for PSD files, and enhanced text tools.

This Free App Shows How Long You've Been Using Your Mac, by Justin Pot, Lifehacker

I've tried all kinds of time-tracking apps over the years and they can be helpful, but it's easy to get bogged down in the numbers. Sometimes all you need is a little self-awareness about how long you've been on the computer, either all day or during the current session, without the burden of long-term metrics.

Pandan is a totally free Mac app from indie app developer Sindre Sorhus that that does exactly that. The application mostly lives in the menu bar, telling you how long your current computing session has been. You can click the menu bar icon to see how long the previous session was and how long you've been on your computer today.

Notes

This Year's WWDC Keynote Will Be Must-see Apple TV, by Dan Moren, Macworld

It certainly seems like the company acted out of fear to try and not look like it was irrelevant, but from this vantage it seems like that decision may have backfired. Now, instead of simply looking out of touch, Apple looks, worse, like it can’t get the job done.

EU Confirms Apple Can Make A Portless iPhone Without USB-C, by Ben Lovejoy, 9to5Mac

However, it was my understanding that the Common Charger Directive only said that if a device has a wired charging port then it must be USB-C – that’s not the same as saying a USB-C port is mandatory.

I’ve now confirmed this with European Commission press officer Federica Miccoli, whose remit covers the internal market and industrial strategy, asking whether a portless phone would be compliant with the law.

Bottom of the Page

Not only will it be interesting to see how Apple will handle the upcoming WWDC keynote, it will also be interesting to see how Apple will handle John Gruber's annual (so far) live talk show.

~

Thanks for reading.