Cropping vulnerability on Commons

For WMF employee / slave nonsense, developer hijinks, and MediaWiki and related software screw-ups.
Post Reply
User avatar
Bbb23sucks
Sucker
Posts: 1337
Joined: Fri Jan 06, 2023 9:08 am
Location: The Astral Plane
Has thanked: 1255 times
Been thanked: 263 times

Cropping vulnerability on Commons

Post by Bbb23sucks » Fri Mar 31, 2023 9:33 pm

(300 post!)

If you don't know already, there has been an exploit affecting several devices that allows the recovery of full or partial images from cropped images. If you would like a good explanation, this is a good video.

On most platforms, images are processed after uploading, so this exploit will usually not affect them. However, photography sites such as Commons usually do not process images, leaving them vulnerable. Unlike other photography sites, Commons has a lot of screenshots from volunteers, which could potentially contain private information such as passwords, e-mail addresses, checkuser and oversight data, real life information, etc. Do you think anything could be compromised by searching for images on Commons effected by this exploit?
"Globally banned" since September 5, 2023 for exposing harassment.

Email: wikipediasucks@disroot.org

Petition to ban Bbb23Wikipedia AlternativeDonate to help French strikers

Post Reply