Missouri Digital News
  • Home
  • News
    • PRESS RELEASE
  • Shop
  • BUSINESS
    • CRYPTO
    • ECONOMY
    • FINANCE
    • MARKET
    • MONEY
  • TECH
    • APPS
    • GADGET
    • MOBILE
    • SCIENCE
  • SOCIAL MEDIA
  • ENTERTAINMENT
    • ARTS & THEATER
    • GAMING
    • GAMBLING
    • MOVIE
    • MUSIC
    • SHOWS
    • SPORTS
  • LIFESTYLE
    • CELEBRITY
    • CULTURE
    • Education
    • FASHION
    • FOOD
    • HEALTH
    • HISTORY
    • Nature
    • Religion
    • Shopping
    • TRAVEL
  • REAL ESTATE
  • Blog
  • Classifieds
No Result
View All Result
Missouri Digital News
  • Home
  • News
    • PRESS RELEASE
  • Shop
  • BUSINESS
    • CRYPTO
    • ECONOMY
    • FINANCE
    • MARKET
    • MONEY
  • TECH
    • APPS
    • GADGET
    • MOBILE
    • SCIENCE
  • SOCIAL MEDIA
  • ENTERTAINMENT
    • ARTS & THEATER
    • GAMING
    • GAMBLING
    • MOVIE
    • MUSIC
    • SHOWS
    • SPORTS
  • LIFESTYLE
    • CELEBRITY
    • CULTURE
    • Education
    • FASHION
    • FOOD
    • HEALTH
    • HISTORY
    • Nature
    • Religion
    • Shopping
    • TRAVEL
  • REAL ESTATE
  • Blog
  • Classifieds
No Result
View All Result
Missouri Digital News
No Result
View All Result
Home GADGET

Google Pixel vulnerability allows bad actors to undo Markup screenshot edits and redactions

Missouri Digital News by Missouri Digital News
March 19, 2023
in GADGET
0
Google Pixel vulnerability allows bad actors to undo Markup screenshot edits and redactions
74
SHARES
1.2k
VIEWS
Share on FacebookShare on Twitter


When Google began rolling out Android’s , the company addressed a “High” severity vulnerability involving the Pixel’s Markup screenshot tool. Over the weekend, and , the reverse engineers who discovered CVE-2023-21036, shared more information about the security flaw, revealing Pixel users are still at risk of their older images being compromised due to the nature of Google’s oversight.

You might also like

Europe tools up for the repairable future

Meta ‘quests’ give you more to do in its Horizon Worlds VR social network

Amazon kills DPReview, the best camera review site on the web

In short, the “aCropalypse” flaw allowed someone to take a PNG screenshot cropped in Markup and undo at least some of the edits in the image. It’s easy to imagine scenarios where a bad actor could abuse that capability. For instance, if a Pixel owner used Markup to redact an image that included sensitive information about themselves, someone could exploit the flaw to reveal that information. You can find the technical details on .

Introducing acropalypse: a serious privacy vulnerability in the Google Pixel’s inbuilt screenshot editing tool, Markup, enabling partial recovery of the original, unedited image data of a cropped and/or redacted screenshot. Huge thanks to @David3141593 for his help throughout! pic.twitter.com/BXNQomnHbr

— Simon Aarons (@ItsSimonTime) March 17, 2023

According to Buchanan, the flaw has existed for about five years, coinciding with the release of Markup alongside . And therein lies the problem. While March’s security patch will prevent Markup from compromising future images, some screenshots Pixel users may have shared in the past are still at risk.

It’s hard to say how concerned Pixel users should be about the flaw. According to a forthcoming Aarons and Buchanan shared with and , some websites, including Twitter, process images in such a way that someone could not exploit the vulnerability to reverse edit a screenshot or image. Users on other platforms aren’t so lucky. Aarons and Buchanan specifically identify Discord, noting the chat app did not patch out the exploit until its recent January 17th update. At the moment, it’s unclear if images shared on other social media and chat apps were left similarly vulnerable.

Google did not immediately respond to Engadget’s request for comment and more information. The March security update is currently available on the Pixel 4a, 5a, 7 and 7 Pro, meaning Markup can still produce vulnerable images on some Pixel devices. It’s unclear when Google will push the patch to other Pixel devices. If you own a Pixel phone without the patch, avoid using Markup to share sensitive images.





Source link

Share30Tweet19
Missouri Digital News

Missouri Digital News

Recommended For You

Europe tools up for the repairable future

by Missouri Digital News
March 22, 2023
0
Europe tools up for the repairable future

The European Commission has laid out another piece of its Circular Economy Action Plan today — adopting a proposal to set common EU rules which are intended to...

Read more

Meta ‘quests’ give you more to do in its Horizon Worlds VR social network

by Missouri Digital News
March 22, 2023
0
Meta ‘quests’ give you more to do in its Horizon Worlds VR social network

To have any hope of making its Horizon Worlds VR social network catch on, Meta has to give potential users a reason to go (and stay) there. Its...

Read more

Amazon kills DPReview, the best camera review site on the web

by Missouri Digital News
March 21, 2023
0
Amazon kills DPReview, the best camera review site on the web

After 25 years of extremely detailed reviews of digital cameras and accessories, the irreplaceable DPReview is being shut down by Amazon as the company proceeds with a new...

Read more

Oppo’s Find X6 Pro packs a 1-inch sensor and a periscopic camera

by Missouri Digital News
March 21, 2023
0
Oppo’s Find X6 Pro packs a 1-inch sensor and a periscopic camera

We were left impressed with Oppo's Find X5 Pro last year, so naturally, we have high expectations for its successor. As announced earlier, the upcoming Find X6 Pro...

Read more

Xbox head says Microsoft’s mobile game store could arrive next year

by Missouri Digital News
March 20, 2023
0
Xbox head says Microsoft’s mobile game store could arrive next year

Microsoft is preparing to launch an Xbox store on iOS and Android as early as next year, according to Phil Spencer. The head of the company’s gaming division...

Read more
Next Post
Week 38 in review: Asus ROG Phone 6D announced, Pixel 7 series pre-order date confirmed

Week 11 in review: Galaxy A34 and A54 debut, Snapdragon 7+ Gen 2 official

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Jefferson City
◉
70°
Mostly Cloudy
7:08 am7:22 pm CDT
Feels like: 70°F
Wind: 7mph SE
Humidity: 69%
Pressure: 29.82"Hg
UV index: 0
ThuFriSat
68/43°F
48/39°F
57/37°F
Weather forecast Jefferson City, Missouri ▸

Fivver Ads

Related News

Quick and Easy Halloween Donut Hole Pops

Quick and Easy Halloween Donut Hole Pops

October 2, 2022
Alex G Performs “Runner,” “Miracles,” More on CBS Saturday Morning: Watch

Alex G Performs “Runner,” “Miracles,” More on CBS Saturday Morning: Watch

January 7, 2023
Staircase Automates Underwriting Of Private Mortgage Insurance

Staircase Automates Underwriting Of Private Mortgage Insurance

September 19, 2022
The Power and Potential of Collaboration for Real-World Results — The Nature Conservancy in Washington

The Power and Potential of Collaboration for Real-World Results — The Nature Conservancy in Washington

September 27, 2022

Wheat falls on weak U.S. export sales, rising Ukraine shipments (NYSEARCA:WEAT)

August 19, 2022
Colgate-Palmolive’s Net Zero Targets Approved by The Science Based Targets initiative

Colgate-Palmolive’s Net Zero Targets Approved by The Science Based Targets initiative

September 15, 2022
NFT games have edge over ‘money in, no money out’ games: Polygon’s Urvit Goel

NFT games have edge over ‘money in, no money out’ games: Polygon’s Urvit Goel

August 15, 2022
FDA grants priority review to efanesoctocog

FDA grants priority review to efanesoctocog

August 30, 2022
Sonic Prime Posters Preview Main Cast of Netflix Series

Sonic Prime Posters Preview Main Cast of Netflix Series

October 28, 2022
MAVERIX SHAREHOLDERS APPROVE ARRANGEMENT WITH TRIPLE FLAG PRECIOUS METALS CORP.

MAVERIX SHAREHOLDERS APPROVE ARRANGEMENT WITH TRIPLE FLAG PRECIOUS METALS CORP.

January 13, 2023
Press Release | Press Releases | Newsroom | U.S. Senator Bill … – Senator Bill Cassidy

Johnson & Johnson Announces Pricing of $7.75 Billion of Senior … – Business Wire

March 9, 2023
USA School Shows Elementary Assembly Programs

USA School Shows Elementary Assembly Programs

November 1, 2022
Samsung releases Global Goals watch bands for its Watch4 and Watch5 models

Samsung releases Global Goals watch bands for its Watch4 and Watch5 models

August 25, 2022
This New Pokémon-Creating AI Is Producing Hilarious Results

This New Pokémon-Creating AI Is Producing Hilarious Results

September 27, 2022
What My Jeans (of All Things!) Taught Me About Love

What My Jeans (of All Things!) Taught Me About Love

January 4, 2023
Missouri Digital News

CATEGORIES

  • APPS
  • ARTS & THEATER
  • BUSINESS
  • CELEBRITY
  • CRYPTO
  • CULTURE
  • ECONOMY
  • Education
  • ENTERTAINMENT
  • FASHION
  • FINANCE
  • FOOD
  • GADGET
  • Gambling
  • GAMING
  • HEALTH
  • HISTORY
  • LIFESTYLE
  • MARKET
  • MOBILE
  • MONEY
  • MOVIE
  • MUSIC
  • Nature
  • News
  • PRESS RELEASE
  • REAL ESTATE
  • Religion
  • SCIENCE
  • Shopping
  • SHOWS
  • SPORTS
  • TECH
  • TRAVEL
PRESS RELEASE

CASPER, WYOMING WOMAN CHARGED WITH ARSON IN … – Department of Justice

March 23, 2023
PRESS RELEASE

Hyundai Motor Company and Advent Technologies Sign Joint … – Business Wire

March 23, 2023
PRESS RELEASE

House Freedom Caucus seizes center stage as debt-ceiling talks stall – Axios

March 23, 2023

© 2022 Missouri Digital News

No Result
View All Result
  • Home
  • News
    • PRESS RELEASE
  • Shop
  • BUSINESS
    • CRYPTO
    • ECONOMY
    • FINANCE
    • MARKET
    • MONEY
  • TECH
    • APPS
    • GADGET
    • MOBILE
    • SCIENCE
  • SOCIAL MEDIA
  • ENTERTAINMENT
    • ARTS & THEATER
    • GAMING
    • GAMBLING
    • MOVIE
    • MUSIC
    • SHOWS
    • SPORTS
  • LIFESTYLE
    • CELEBRITY
    • CULTURE
    • Education
    • FASHION
    • FOOD
    • HEALTH
    • HISTORY
    • Nature
    • Religion
    • Shopping
    • TRAVEL
  • REAL ESTATE
  • Blog
  • Classifieds

© 2022 Missouri Digital News

Are you sure want to unlock this post?
Unlock left : 0
Are you sure want to cancel subscription?