Pixel ‘aCropalypse’ exploit could pose a severe data risk

What you need to know

  • A security vulnerability called “aCropalypse” could pose a significant data risk to Pixels, custom ROMs, and other Android devices using the default “markup” editing tool.
  • Pixel PNG screenshots can be decrypted by attackers and rediscover sensitive information you don’t want others to see.
  • Fortunately, this vulnerability has been fixed by Google’s recent feature removal in March.

Simple and easy things like editing screenshots from Pixel are cause for concern. Dubbed “aCropalypse,” researchers Simon Aarons and David Buchanan discovered an exploit for PNG screenshots after cropping pixels using markup (via Android Police). The issue has been confirmed to affect Pixel, his non-Pixel Android smartphones, as well as some custom ROMs, and while it’s not limited to his Discord on the messaging service, it’s fairly prevalent. I’m here.

Both researchers discovered a serious security flaw on January 2nd and quickly worked out ways to prove its existence before alerting Google on the same day.After acknowledging that, Google patched the issue first It was released on January 24th, but the fix wasn’t deployed until almost two months later, when the March feature was removed.



Source link

Leave a Reply

Your email address will not be published. Required fields are marked *