Уровень 0 · материалов: 3
В кластер входят документы об уязвимостях, позволяющих получить несанкционированный доступ к истории чатов, и не входят документы о функциях обновления мессенджеров для удаления сообщений.
Общие признаки: локальные дыры в безопасности, доступ к удаленным или зашифрованным сообщениям, хранение данных в базах данных, нарушение конфиденциальности пользователей
Группа выше: Утечки учётных данных и переписки
Смысл: The text highlights a privacy vulnerability in Telegram where the Windows client and API expose chat histories that users believe have been deleted, specifically occurring when a basic group is migrated to a supergroup.
A vulnerability in Telegram's Windows client and API allows users to see and retrieve message histories from deleted chats that were migrated from basic groups to supergroups.
Смысл: The text explains how to manually migrate Viber chat history on Windows by copying the viber.db file and reveals a security vulnerability where message databases are not tied to a specific user account, allowing unauthorized reading if the file is accessed.
An IT technician discovers a way to migrate Viber history via the viber.db file and reveals that this file allows unauthorized access to messages regardless of the account owner.
Смысл: The text explains how to manually extract contacts, call logs, and chat histories from Skype 4.* by querying its unencrypted SQLite database file, highlighting a significant local privacy flaw.
Skype 4.* stores user data in an unencrypted SQLite database, allowing anyone with file access to extract chat histories and call logs using simple SQL queries.