Google's new Gmail mobile web app sports offline message caching, lots of floaty goodness

safari posts

We now have official word from Samsung regarding the browser on its new Samsung L870 slider. You may recall that the Samsung-issued press release listed "Safari browser (full browsing)" as a feature. Now the clarification:
A close examination of the descriptions of Apple's 2008 WWDC sessions revealed at least one iPhone gem, buried in the appropriately-named "Enhancing Your iPhone Web Application with CSS Transforms and Animations" overview: Safari's getting a little bit of an update. With firmware 2.0 baking to a delightfully golden brown right now in preparation for a June release, of course, it only stands to reason that the iPhone's Safari implementation would get retooled a bit to pull in a more recent Webkit build and stay somewhat in sync with the headway Apple's browser has made on the desktop, and we now know that CSS transforms and animations will be supported as a part of that. What does that mean, exactly? In short, the feature allows web page elements to be twirled, zoomed, and skewed, making for some pretty eye-popping (or watering) effects. It's all going to be accelerated by the iPhone's hardware, too, meaning that the next ultra-annoying ad for some sketchy product that you view on your iPhone should really fly.
Oops, researchers just unveiled a pretty serious security vulnerability in the iPhone. More specifically, it's Apple's Safari web browser which exhibits the vulnerability. Researchers at Independent Security Evaluators have used the vulnerability to take malicious control of the iPhone from rogue websites loaded with the exploit. Once in, researchers have full administrative access over the phone allowing them to listen in on room audio or snatch the SMS log, address book, call history, email passwords and more -- we're talking full access to your phone. Researchers note that the only way to stay safe is to check those URLs and only visit sites that you trust (which isn't very reassuring) and "may or may not be exploitable" from Mac and PC versions of Safari -- the same vulnerability exists only they haven't written the proof-of-concept exploit to test it yet. Apple has been notified of the vulnerability and a proposed fix with full public disclosure coming at the BlackHat conference on August 2nd. You listening InfoSec Sellout? That's how you report a bug. Check the exploit in video form after the break. 








