CVE-2019-8804: An inconsistency in Wi-Fi network configuration
ID: 4ca0d69c-0840-51fd-9ea1-47180964f8af
STIX ID: report--4ca0d69c-0840-51fd-9ea1-47180964f8af
Feed Name: Zimperium Blog
Threat Score
Researcher Christy Philip Mathew disclosed CVE-2019-8804: certain iOS/iPadOS devices would automatically connect to networks named “Apple Store” during initial setup or after a reset, enabling a nearby attacker operating a rogue access point to capture credentials (including iCloud/Apple credentials). The issue was remediated in iOS 13.2/iPadOS 13.2; prior to the patch, some security products (e.g., Zimperium zIPS) could warn users about such rogue networks.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
