Latest News

Google Pixel Bug Lets Anyone Undo Edits Made With the Markup Tool

A severe vulnerability has been found with the Markup tool on Google Pixel smartphones that can let hackers un-edit the edited screenshots. While the vulnerability has been patched with the latest March 2023 security patch, it still poses risks for Pixel users. Identified by security researchers Simon Aarons and David Buchanan, dubbed the “apocalypse?” flaw, marked CVE-2023-21036, lets someone undo some of the edits made with the Markup tool on a cropped PNG screenshot.

According to the developers, this means that years-worth of redacted images sent on platforms such as Discord over the past five years could potentially be at risk of being exposed by bad actors. That’s because the vulnerability existed when Google introduced the Markup feature in Android 9 Pie last year, and it only takes a few steps to reclaim that data.

Latest News: Study Shocks The World; Over 170 Trillion Plastic Particles Found In Oceans

How it works

Whenever a user crops or edits an image using the Markup tool, Google saves both the original snapshot and the edited version in the same folder. The app then uses the modified version while the original image remains unchanged.

But this doesn’t prevent hackers from reclaiming those original edits, as the reverse engineering process can recover them. It’s all about knowing where the information is stored in a file.

As a result, the reclaimed information can include anything from personal information to passwords and even private photos.

Test your cropped pngs here.

After discovering the vulnerability, security researcher and ethical hacker David Schutz tried the exploit on his Pixel 6 device. He realized that by swapping out the SIM card, entering the correct PIN incorrectly three times, and then entering a Personal Unlocking Key (PUK) code and choosing a new PIN, he could unlock the phone without any fingerprint or PIN.

This bug could easily be abused by crooks, hackers, and jealous spouses. It’s why Schutz reported it to Google and was given a $70,000 bounty for discovering and reporting the vulnerability.

The vulnerability was fixed in the latest update for Pixel devices, but it’s important to remember that older Pixel devices may not be able to receive security updates. The company has stated that it will not release patches for devices that are out of support.

Why the patch is so important

While it’s nice that Google has finally fixed the security issue, it’s also worth noting that many people may have been sharing these redacted images over the years on platforms like Discord. As a result, keeping track of these files is challenging, and bad actors could easily reclaim them.

This bug is serious, and it’s a shame that it was only found recently and didn’t get the attention it deserved. It’s a glaring security vulnerability that will significantly impact how people share and protect their private information. That’s why it’s vital to patch this bug immediately.

James Williams

James Williams is a bestselling author and historian with a passion for storytelling. He has written numerous books on historical figures and events, including biographies of famous leaders and explorers. James is also a regular contributor to several historical publications and blogs. His ability to bring history to life has earned him critical acclaim and a loyal following of readers. When he's not writing, James enjoys traveling to historical sites and exploring new places.

Recent Posts

What it Takes to Lead an Event with an Excellent Emcee

If you’re planning to hold an event in Singapore, having an excellent emcee is essential…

9 hours ago

Perfet Ways to Stay Fit All Through

You want to get fit and keep your health in check.  However, you don't see…

11 hours ago

Expert Tips For Choosing and Applying Loose Powder Correctly

If you think loose powder is just like any other makeup, then you're in for…

1 day ago

BTS Comeback Ignites Music Industry with New Album and Massive Tour

The music industry is witnessing one of its most anticipated moments as BTS makes a…

2 days ago

What to Look for in an Event Company

Do you have plans of organizing an event in Singapore soon? Whether it is a…

2 days ago

How Do Renewable Energy Certificates Work?

With an increasing number of businesses looking to reduce their carbon footprint, companies are taking…

3 days ago