Researchers find user activity can leak through file change notifications on four operating systemsMachine translation
Automatically verified and published · Generated and evidence-checked automatically; not reviewed by a human.
Researchers at Graz University of Technology found that file change notifications in Android, Linux, macOS and Windows could be abused to infer user activity from filenames and change times, even without access to file contents. An attack requires malicious software running on the device and local access; the research says there is currently no evidence of attacks exploiting the vulnerability.
Why it matters
研究覆盖四大主流系统,并指出文件内容不可见时仍可能通过变更记录推测用户行为;实际攻击所需的本地访问条件也有助于判断风险。
The complete source text is not yet available.
Read at the original source