{"id":484941,"date":"2023-03-23T15:18:18","date_gmt":"2023-03-23T13:18:18","guid":{"rendered":"https:\/\/mybroadband.co.za\/news\/?p=484941"},"modified":"2023-03-23T15:34:22","modified_gmt":"2023-03-23T13:34:22","slug":"windows-11-screenshot-flaw-could-expose-sensitive-data","status":"publish","type":"post","link":"https:\/\/mybroadband.co.za\/news\/security\/484941-windows-11-screenshot-flaw-could-expose-sensitive-data.html","title":{"rendered":"Windows 11 screenshot flaw could expose sensitive data"},"content":{"rendered":"<p>Software developer Chris Blume has discovered a screenshot security flaw in Windows 11&#8217;s Snipping Tool that could be exploited to access sensitive data.<\/p>\n<p>The tool doesn&#8217;t erase cropped PNG image data, meaning malicious actors could potentially recover and view the unused data.<\/p>\n<p>&#8220;I&#8217;ve got a fun one for you all to look at,&#8221; Blume <strong><a href=\"https:\/\/twitter.com\/ProgramMax\/status\/1638217206180741121?s=20\" target=\"_blank\" rel=\"noopener\">said<\/a><\/strong>.<\/p>\n<p>&#8220;I opened a 198-byte PNG with Microsoft&#8217;s Snipping Tool, chose &#8220;Save As&#8221; to overwrite a different PNG file (no editing), and saves a 4,762-byte file with all that extra after the PNG IEND chunk.&#8221;<\/p>\n<p>Cybersecurity researcher David Buchanan confirmed that extracting the &#8220;hidden&#8221; data is possible using a modified version of a script demonstrating a similar vulnerability within the Android operating system.<\/p>\n<p>&#8220;Windows Snipping Tool is vulnerable to aCropalypse too. An entirely unrelated codebase,&#8221; Buchanan <strong><a href=\"https:\/\/twitter.com\/David3141593\/status\/1638222624084951040?s=20\" target=\"_blank\" rel=\"noopener\">said<\/a><\/strong>.<\/p>\n<p>&#8220;The same exploit script works with minor changes (the pixel format is RGBA not RGB). Tested myself on Windows 11.&#8221;<\/p>\n<p>Buchanan and programmer Simon Aarons recently discovered the &#8220;aCropalypse&#8221; vulnerability in the screenshot editing tool on Google Pixel phones.<\/p>\n<p>The vulnerability doesn&#8217;t affect all screenshot files, including optimised images, and users can wipe cropped image data by saving cropped screenshots as another file in an image editor.<\/p>\n<p>JPEG images are also vulnerable to leaving cropped data recoverable. However, the exploit doesn&#8217;t work with the image format yet.<\/p>\n<p>Microsoft told <strong><a href=\"https:\/\/www.bleepingcomputer.com\/news\/microsoft\/windows-11-snipping-tool-privacy-bug-exposes-cropped-image-content\/\" target=\"_blank\" rel=\"noopener\">BleepingComputer<\/a><\/strong> that it is investigating security reports and will &#8220;take action as needed&#8221; to protect Windows 11 users.<\/p>\n<hr \/>\n<h2 class=\"my-4\">Now read: <a href=\"https:\/\/mybroadband.co.za\/news\/security\/484619-ferrari-suffers-ransomware-attack.html\" rel=\"bookmark\">Ferrari suffers ransomware attack<\/a><\/h2>\n","protected":false},"excerpt":{"rendered":"<p>Malicious actors could recover cropped image data to view potentially sensitive information.<\/p>\n","protected":false},"author":341076,"featured_media":476507,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[27],"tags":[85079,85059,85061,123,58630,83239,70233],"class_list":["post-484941","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-security","tag-acropalypse","tag-chris-blume","tag-david-buchanan","tag-microsoft","tag-screenshots","tag-snipping-tool","tag-windows-11"],"_links":{"self":[{"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/posts\/484941"}],"collection":[{"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/users\/341076"}],"replies":[{"embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/comments?post=484941"}],"version-history":[{"count":1,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/posts\/484941\/revisions"}],"predecessor-version":[{"id":485039,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/posts\/484941\/revisions\/485039"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/media\/476507"}],"wp:attachment":[{"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/media?parent=484941"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/categories?post=484941"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/tags?post=484941"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}