They have also published a paper and website warning users about the threat.

The iLeakage attack is executed using JavaScript and WebAssembly, the two programming languages for delivering dynamic web content.

Finally, we demonstrate the recovery of passwords, in case these are auto-filled by credential managers.

Apple

Apple was notified about the vulnerability by the researchers on September 12, 2022.

Also, the mitigation works against Macs only when running Safari.

you might visit the iLeakagepagefor instructions on how to activate the mitigation.

spot_img

source: www.techworm.net