Post

Replies

Boosts

Views

Activity

Reply to CFNetwork not handling cookie attribute "SameSite=none" correctly in macOS <10.15
Reported as FB7586636.We now have data that shows 12.7% (&gt;5,000) of devices (the vast majority being Apple devices) accessing our web services are likely to be affected by the samesite=none cookie handling issue.We are anxious to preserve a good user experience for these devices and to prevent web services suppliers having to reduce standard security settings for these users by unreliable means including User Agent sniffing etc.I believe it can be argued that the inability to properly handle samesite=none (&amp; its other variations) will have a material effect on the future online security of users of older macOS &amp; iOS versions.
Feb ’20