Xorte logo

News Markets Groups

USA | Europe | Asia | World| Stocks | Commodities



Add a new RSS channel

 
 


Keywords

2023-03-22 14:15:19| Engadget

It's not just Android phones that are vulnerable to a screenshot security flaw. Developer Chris Blume has discovered that Windows 11's Snipping Tool falls prey to a similar exploit. The utility doesn't completely erase unused PNG image data, making it possible to recover some of the cropped-out picture and potentially obtain sensitive data. As BleepingComputerverified with researcher David Buchanan, you can extract the supposedly hidden info using a slightly modified version of the script used to demonstrate the Android vulnerability.The issue doesn't affect some PNG files, including optimized images. You can also wipe the unused data by saving the cropped picture as another file in an image editing tool. JPEG files also leave data from the original screenshot, but the exploit isn't known to work with the format at this stage.holy FUCK.Windows Snipping Tool is vulnerable to Acropalypse too.An entirely unrelated codebase.The same exploit script works with minor changes (the pixel format is RGBA not RGB)Tested myself on Windows 11 https://t.co/5q2vb6jWOnpic.twitter.com/ovJKPr0x5Y David Buchanan (@David3141593) March 21, 2023We've asked Microsoft for comment and will let you know if we hear back. In a statement to BleepingComputer, Microsoft says it's "investigating" the security reports and will "take action as needed" to protect users.Buchanan and programmer Simon Aarons recently found a severe "aCropalypse" flaw in the Markup screenshot feature on Google Pixel phones. While Google has since patched the security hole with its March update (now expanded to Pixel 6 phones), the fix only addresses images created after installing the patch. Provided Microsoft releases a corresponding Windows 11 update, existing images may have the same problem.The concern, as you might guess, is that an intruder with access to your images might use a script to recover information you intend to hide, such as contacts and business secrets. The culprit could use the info for harassment, blackmail or espionage. While this may not be as much of a headache for locally stored screenshots (you have larger problems if an attacker already has access to your device), it could be very troublesome for unmodified images you save in the cloud.This article originally appeared on Engadget at https://www.engadget.com/windows-11-security-flaw-exposes-cropped-out-screenshot-data-131519887.html?src=rss


Category: Marketing and Advertising

 

Latest from this category

09.05AI Update, May 9, 2025: AI News and Views From the Past Week
09.05Patrons select emotions to order cocktails at Suntorys Glass and Words pop-up bar in Tokyo
08.05Which US Jobs Are Using Generative AI the Most? [Infographic]
08.05The Secret to B2B Event Success: The Virtual Sandwich Method
08.05AI in B2B Marketing: Connecting Adtech and Martech for Full-Funnel Growth
08.05Lidl cuts cartoon marketing from low-nutrition products
07.05Are AI Customer Experience Agents Helpful?
07.05What Does the Marketer of the Future Look Like?
Marketing and Advertising »

All news

13.05Nissan to cut 11,000 more jobs and shut seven factories
13.05M&S says personal customer data stolen in cyber attack
13.05Foreign investors continue to show confidence in India despite global uncertainty: Pratik Gupta
13.05UK jobs market continues to weaken
13.05Kotak Equities reshuffles model portfolio; adds IndiGo, Pidilite; reduces Dabur. Heres what changed
13.05How the 2024 WNBA draft changed womens sports forever
13.05US cuts tariffs on small parcels from Chinese firms like Shein and Temu
13.05'Fish and chips is special - but costs are rising'
More »
Privacy policy . Copyright . Contact form .