By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
MadisonyMadisony
Notification Show More
Font ResizerAa
  • Home
  • National & World
  • Politics
  • Investigative Reports
  • Education
  • Health
  • Entertainment
  • Technology
  • Sports
  • Money
  • Pets & Animals
Reading: A New Assault Lets Hackers Steal 2-Issue Authentication Codes From Android Telephones
Share
Font ResizerAa
MadisonyMadisony
Search
  • Home
  • National & World
  • Politics
  • Investigative Reports
  • Education
  • Health
  • Entertainment
  • Technology
  • Sports
  • Money
  • Pets & Animals
Have an existing account? Sign In
Follow US
2025 © Madisony.com. All Rights Reserved.
Technology

A New Assault Lets Hackers Steal 2-Issue Authentication Codes From Android Telephones

Madisony
Last updated: October 15, 2025 1:16 am
Madisony
Share
A New Assault Lets Hackers Steal 2-Issue Authentication Codes From Android Telephones
SHARE

[ad_1]

Android units are susceptible to a brand new assault that may covertly steal two-factor authentication codes, location timelines, and different non-public information in lower than 30 seconds.

The brand new assault, named Pixnapping by the group of educational researchers who devised it, requires a sufferer to first set up a malicious app on an Android telephone or pill. The app, which requires no system permissions, can then successfully learn information that another put in app shows on the display screen. Pixnapping has been demonstrated on Google Pixel telephones and the Samsung Galaxy S25 telephone and sure might be modified to work on different fashions with extra work. Google launched mitigations final month, however the researchers mentioned a modified model of the assault works even when the replace is put in.

Like Taking a Screenshot

Pixnapping assaults start with the malicious app invoking Android programming interfaces that trigger the authenticator or different focused apps to ship delicate info to the system display screen. The malicious app then runs graphical operations on particular person pixels of curiosity to the attacker. Pixnapping then exploits a facet channel that permits the malicious app to map the pixels at these coordinates to letters, numbers, or shapes.

“Something that’s seen when the goal app is opened could be stolen by the malicious app utilizing Pixnapping,” the researchers wrote on an informational web site. “Chat messages, 2FA codes, e mail messages, and many others. are all susceptible since they’re seen. If an app has secret info that’s not seen (e.g., it has a secret key that’s saved however by no means proven on the display screen), that info can’t be stolen by Pixnapping.”

The brand new assault class is harking back to GPU.zip, a 2023 assault that allowed malicious web sites to learn the usernames, passwords, and different delicate visible information displayed by different web sites. It labored by exploiting facet channels present in GPUs from all main suppliers. The vulnerabilities that GPU.zip exploited have by no means been fastened. As an alternative, the assault was blocked in browsers by limiting their capacity to open iframes, an HTML aspect that permits one web site (within the case of GPU.zip, a malicious one) to embed the contents of a web site from a special area.

Pixnapping targets the identical facet channel as GPU.zip, particularly the exact period of time it takes for a given body to be rendered on the display screen.

[ad_2]

Subscribe to Our Newsletter
Subscribe to our newsletter to get our newest articles instantly!
[mc4wp_form]
Share This Article
Email Copy Link Print
Previous Article Discover out who received ‘America’s Prime Younger Scientist’ for 2025 Discover out who received ‘America’s Prime Younger Scientist’ for 2025
Next Article A number of airports refuse to play DHS video blaming Democrats for presidency shutdown A number of airports refuse to play DHS video blaming Democrats for presidency shutdown

POPULAR

Hulu Thriller ‘Count My Lies’ Filming: Lohan & Woodley in Tense Scene, Harington Shows Physique
Entertainment

Hulu Thriller ‘Count My Lies’ Filming: Lohan & Woodley in Tense Scene, Harington Shows Physique

MLB Pitcher Cites Bible Verse on Pride Night Cap
Sports

MLB Pitcher Cites Bible Verse on Pride Night Cap

Harper Beckham’s LA Visit Amid Family Rift; Brooklyn Absent
Entertainment

Harper Beckham’s LA Visit Amid Family Rift; Brooklyn Absent

LandBridge: Monetizing Land for Oil, Water, and Data Centers
business

LandBridge: Monetizing Land for Oil, Water, and Data Centers

Prince Louis’s Gap-Toothed Smile Steals Show at Trooping the Colour
top

Prince Louis’s Gap-Toothed Smile Steals Show at Trooping the Colour

Libya Becomes EU’s ‘Offshore Containment Camp’ for Migrants
top

Libya Becomes EU’s ‘Offshore Containment Camp’ for Migrants

US Government Orders AI Model Shutdown Amid Security Concerns
Technology

US Government Orders AI Model Shutdown Amid Security Concerns

You Might Also Like

1.1 Million Pensioners Miss Out on £5,704 DWP Benefit Yearly
businessEducationEntertainmentHealthPoliticsSportsTechnologytopworld

1.1 Million Pensioners Miss Out on £5,704 DWP Benefit Yearly

More than 1.1 million individuals over State Pension age in the UK remain unaware of or unclaimed for Attendance Allowance,…

3 Min Read
Author's AI brokers can really do your work—not simply chat about it
Technology

Author's AI brokers can really do your work—not simply chat about it

Author, a San Francisco-based synthetic intelligence startup, is launching a unified AI agent platform designed to let any worker automate…

17 Min Read
Apple’s Greatest New iOS 26 Characteristic Has Been on Pixel Telephones for Years
Technology

Apple’s Greatest New iOS 26 Characteristic Has Been on Pixel Telephones for Years

Ever since I was a toddler, I’ve despised answering the telephone when an unknown quantity calls. Who might be on…

4 Min Read
Pumped Hydro Power Storage Is Having a Renaissance
Technology

Pumped Hydro Power Storage Is Having a Renaissance

In Vattenfall’s central management room, human operators aided by algorithms monitor the electrical energy grid, and the market, to evaluate…

2 Min Read
Madisony

We cover the stories that shape the world, from breaking global headlines to the insights behind them. Our mission is simple: deliver news you can rely on, fast and fact-checked.

Recent News

Hulu Thriller ‘Count My Lies’ Filming: Lohan & Woodley in Tense Scene, Harington Shows Physique
Hulu Thriller ‘Count My Lies’ Filming: Lohan & Woodley in Tense Scene, Harington Shows Physique
June 13, 2026
MLB Pitcher Cites Bible Verse on Pride Night Cap
MLB Pitcher Cites Bible Verse on Pride Night Cap
June 13, 2026
Harper Beckham’s LA Visit Amid Family Rift; Brooklyn Absent
Harper Beckham’s LA Visit Amid Family Rift; Brooklyn Absent
June 13, 2026

Trending News

Hulu Thriller ‘Count My Lies’ Filming: Lohan & Woodley in Tense Scene, Harington Shows Physique
MLB Pitcher Cites Bible Verse on Pride Night Cap
Harper Beckham’s LA Visit Amid Family Rift; Brooklyn Absent
LandBridge: Monetizing Land for Oil, Water, and Data Centers
Prince Louis’s Gap-Toothed Smile Steals Show at Trooping the Colour
  • About Us
  • Privacy Policy
  • Terms Of Service
Reading: A New Assault Lets Hackers Steal 2-Issue Authentication Codes From Android Telephones
Share

2025 © Madisony.com. All Rights Reserved.

Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?