A researcher with MajorSecurity, David Vieira-Kurz, has discovered a serious security vulnerability in the iOS 5.1 version of Safari. The problem lies with the way iOS handles the JavaScript window.open() method, used to open a new browser window. A malicious coder could use this to spoof URLs, tricking people into visiting copycat websites that might contain other threats or ask for credit card information.