ftpolt.blogg.se

Deleted keybase app kept chat images
Deleted keybase app kept chat images












deleted keybase app kept chat images
  1. #DELETED KEYBASE APP KEPT CHAT IMAGES SOFTWARE#
  2. #DELETED KEYBASE APP KEPT CHAT IMAGES WINDOWS#
deleted keybase app kept chat images

The flaw in the encrypted messaging application ( CVE-2021-23827 ) does not expose Keybase users to remote compromise. However, it could put their security, privacy and safety at risk, especially for users living under authoritarian regimes in which apps like Keybase and Signal are increasingly relied on as a way to conduct conversations out of earshot of law enforcement or security services. The flaw was discovered by researchers from the group Sakura Samurai as part of a bug bounty program offered by Zoom, which acquired Keybase in May, 2020.

#DELETED KEYBASE APP KEPT CHAT IMAGES SOFTWARE#

Zoom said it has fixed the flaw in the latest versions of its software for Windows, macOS and Linux.Īccording to researcher John Jackson of Sakura Samurai, the Keybase flaw manifested itself in two ways. First: Jackson discovered that images that were copy and pasted into Keybase chats were not reliably deleted from a temporary folder, /uploadtemps, associated with the client application. “In general, when you would copy and paste in a Keybase chat, the folder would appear in (the uploadtemps) folder and then immediately get deleted,” Jackson told Security Ledger in a phone interview. Clearly there was some kind of software error – a collision of sorts – where the images were not getting cleared.”Įxploitable Flaw in NPM Private IP App Lurks Everywhere, Anywhere ĭiscovering that flaw put Sakura Samurai researchers on the hunt for more and they soon struck pay dirt again. Sakura Samurai members Aubrey Cottle ( ), Robert Willis ( and Jackson Henry ( ) discovered an unencrypted directory, /Cache, associated with the Keybase client that contained a comprehensive record of images from encrypted chat sessions. In a statement, a Zoom spokesman said that the company appreciates the work of the researchers and takes privacy and security “very seriously.” The application used a custom extension to name the files, but they were easily viewable directly or simply by changing the custom file extension to the PNG image format, Jackson said.

#DELETED KEYBASE APP KEPT CHAT IMAGES WINDOWS#

“We addressed the issue identified by the Sakura Samurai researchers on our Keybase platform in version 5.6.0 for Windows and macOS and version 5.6.1 for Linux.

deleted keybase app kept chat images

Users can help keep themselves secure by applying current updates or downloading the latest Keybase software with all current security updates,” the spokesman said. In zoom keybase app chat images software# Podcast Episode 141: Massive Data Breaches Just Keep Happening. In most cases, the failure to remove files from cache after they were deleted would count as a “low priority” security flaw. However, in the context of an end-to-end encrypted communications application like Keybase, the failure takes on added weight, Jackson wrote. Messaging app flaws take on new importance A user, believing that they are sending photos that can be cleared later, may not realize that sent photos are not cleared from the cache and may send photos of PII or other sensitive data to friends or colleagues.” “An attacker that gains access to a victim machine can potentially obtain sensitive data through gathered photos, especially if the user utilizes Keybase frequently. The flaw takes on even more weight given the recent flight of millions of Internet users to end-to-end encrypted messaging applications like Keybase, Signal and Telegram. Those users were responding to onerous data sharing policies, such as those recently introduced on Facebook’s WhatsApp chat. In zoom keybase app chat images windows#.In zoom keybase app chat images software#.














Deleted keybase app kept chat images