Apple Fixed Tracking Flaws In Safari, But Google Director Disagrees

Google security researchers have published a paper which detailed a tool that Apple developed to halt web tracking, but which actually contained a number of flaws.

The ‘multiple security and privacy issues’ were found in Safari’s Intelligent Tracking Prevention (ITP) feature, according to a paper published on the matter. The tool was designed to block tracking software used by digital advertisers, but can be exploited to do the exact opposite, Google said.

Google reportedly told Apple about the problem with five flaws in August 2019, and in December Apple published a blog post saying it had fixed the issues and it thanked Google for its help.

Tracking flaw

According to the report among those issues Google found with ITP was a feature that stores information about websites visited by the user.

A flaw in the technology also could potentially allow hackers to “create a persistent fingerprint that will follow the user around the web”.

Other vulnerabilities Google researchers apparently discovered in ITP allowed third parties to observe what individual users were searching for on search engine pages.

Apple has worked hard over the years to protect user privacy and has installed anti-tracking technologies across its portfolio. Apple for example added ITP to Safari in 2017 to protect users from being tracked by third parties.

Not fixed

But it seems as though Google doesn’t believe that Apple has actually patched the problem, despite its claims that it had.

This week on Twitter, Google Chrome Engineering Director Justin Schuh tweeted that the actual vulnerabilities have not been fixed, despite Apple’s claim.

“No, I can assure you that they still haven’t fixed these issues, which is what made that blog post last year so weird,” tweeted Schuh in a thread. “Apple didn’t disclose the vulnerabilities or appropriately credit the researchers, but put out a post implying they fixed ‘something’”.

Do you know all about security? Try our quiz!

Tom Jowitt

Tom Jowitt is a leading British tech freelancer and long standing contributor to Silicon UK. He is also a bit of a Lord of the Rings nut...

Recent Posts

Apple, Google Mobile Ecosystems Should Be Investigated, CMA Told

CMA receives 'provisional recommendation' from independent inquiry that Apple,Google mobile ecosystem needs investigation

2 days ago

Australia Rejects Elon Musk Claim About Social Media Ban For Under-16s

Government minister flatly rejects Elon Musk's “unsurprising” allegation that Australian government seeks control of Internet…

2 days ago

Northvolt Files For Bankruptcy Protection In US

Northvolt files for Chapter 11 bankruptcy protection in the United States, and CEO and co-founder…

2 days ago

UK’s CMA Readies Cloud Sector “Behavioural” Remedies – Report

Targetting AWS, Microsoft? British competition regulator soon to announce “behavioural” remedies for cloud sector

3 days ago

Former Policy Boss At X, Nick Pickles, Joins Sam Altman Venture

Move to Elon Musk rival. Former senior executive at X joins Sam Altman's venture formerly…

3 days ago

Bitcoin Rises Above $96,000 Amid Trump Optimism

Bitcoin price rises towards $100,000, amid investor optimism of friendlier US regulatory landscape under Donald…

3 days ago