PogoWasRight.org

Menu
  • About
  • Privacy
Menu

OS X search tool Spotlight runs roughshod over Mail privacy settings

Posted on January 10, 2015 by pogowasright.org

Shaun Nichols reports:

Spotlight, the desktop search engine for OS X computers, will ignore privacy settings in Apple’s Mail client when showing messages in its search results.

The programming booboo means pictures and possibly other files linked to in HTML emails will automatically show up even if you’ve told Apple’s supplied client to not load remote content.

This means tiny, transparent images hidden in messages by spammers and message-tracking software will be fetched, confirming that your email address is working and you’re able to pick up e-missives.

Read more on The Register.

MacRumors reports the flaw was first reported by German tech news site Heise and replicated in tests performed by IDG News Service.

Category: Online

Post navigation

← House Dem revives major cyber bill
NSA reform facing hard sell following Paris terror attacks →

Now more than ever

Search

Contact Me

Email: info@pogowasright.org

Mastodon: Infosec.Exchange/@PogoWasRight

Signal: +1 516-776-7756

Categories

Recent Posts

  • License Plate Reader Company Flock Is Building a Massive People Lookup Tool, Leak Shows
  • FTC dismisses privacy concerns in Google breakup
  • ARC sells airline ticket records to ICE and others
  • Clothing Retailer, Todd Snyder, Inc., Settles CPPA Allegations Regarding California Consumer Privacy Act Violations
  • US Customs and Border Protection Plans to Photograph Everyone Exiting the US by Car
  • Google agrees to pay Texas $1.4 billion data privacy settlement
  • The App Store Freedom Act Compromises User Privacy To Punish Big Tech

RSS Recent Posts on DataBreaches.net

  • Cyberattacks on Long Island Schools Highlight Growing Threat
  • Dior faces scrutiny, fine in Korea for insufficient data breach reporting; data of wealthy clients in China, South Korea stolen
  • Administrator Of Online Criminal Marketplace Extradited From Kosovo To The United States
  • Twilio denies breach following leak of alleged Steam 2FA codes
  • Personal information exposed by Australian Human Rights Commission data breach
©2025 PogoWasRight.org. All rights reserved.
Menu
  • About
  • Privacy