Be aware of this Windows 11 security flaw!
Cropped-out screenshot data is exposed by a Windows 11 security vulnerability. Here are all the details.
Today, privacy and security are extremely important, so companies attach great importance to this issue. but the security error that occurred in Windows 11 surprised everyone. Error revealed by a screenshot can reveal confidential data.
This problem on Windows 11 might leak your information
holy FUCK.
— David Buchanan (@David3141593) March 21, 2023
Windows Snipping Tool is vulnerable to Acropalypse too.
An entirely unrelated codebase.
The same exploit script works with minor changes (the pixel format is RGBA not RGB)
Tested myself on Windows 11 https://t.co/5q2vb6jWOn pic.twitter.com/ovJKPr0x5Y
I've got a fun one for you all to look at.
— Chris Blume (@ProgramMax) March 21, 2023
I opened a 198 byte PNG with Microsoft's Snipping Tool, chose "Save As" to overwrite a different PNG file (no editing), and saves a 4,762 byte file with all that extra after the PNG IEND chunk.
Sounds similar :D
The flaw leaves some of the cropped-out image intact, making it possible to recover some of the image's original content and possibly obtain sensitive information. A slightly modified version of the script used to show the Android vulnerability can be used to retrieve the allegedly hidden information, as researcher David Buchanan confirmed to BleepingComputer. Certain PNG files, including optimized pictures, are unaffected by the problem. There is still no solution regarding this problem.