iOS users should watch out next time they decide to take up a conversation via Skype, they could be exposing themselves to a pretty fundamental security hole.
The steps that need to be taken to fix the hole involve both Skype and Apple. First off, Skype need to throw out an update, ideally disabling JavaScript in the username field, at least while they re-work more integral stuff to fully fix their end of the problem and secondly the iOS address book is designed in such a way that it leaves contacts and full address book access completely open to any program on the device. Without being able to allow/disallow address book access for certain applications, the attack will remain possible.We have no idea how long it will take either company to sort the problem but we hope it’s soon. On a side note, the conspiracy theorist within me is wondering whether Microsoft’s acquisition of Skype has anything to do with this, it’s the perfect way into the iOS platform for them, but hey, it’s just me who thought that, right?