Microsoft warns of "Dirty Stream" attack impacting Android apps (www.bleepingcomputer.com)
from kid@sh.itjust.works to cybersecurity@sh.itjust.works on 03 May 11:43
https://sh.itjust.works/post/18740708

#cybersecurity

threaded - newest

elmicha@feddit.de on 03 May 12:57 collapse

Dirty Stream allows malicious apps to send a file with a manipulated filename or path to another app using a custom intent. The target app is misled into trusting the filename or path and executes or stores the file in a critical directory.

Couldn’t Android filter these names so they can’t contain a path?