Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
File Notification Systems Leak User Data on Major OS

File Notification Systems Leak User Data on Major OS

Posted on September 25, 2026 By CWS

Researchers from the Graz University of Technology in Austria have uncovered vulnerabilities in the file-change notification features across major operating systems such as Linux, Windows, Android, and macOS. These weaknesses could potentially allow for the monitoring of user activities, including keystroke patterns and website visits.

Understanding the File Notification Systems

Many operating systems, including Linux, Windows, macOS, and Android, offer applications the ability to be notified when files are modified, deleted, or created. This feature is widely utilized by applications like text editors, file managers, and antivirus software. It generally requires only read access to the directory, eliminating the need for special permissions.

While these attacks do not expose the actual content of files, researchers demonstrated that monitoring file names and event timings suffices to deduce user and system activities. Most scenarios require that an attacker can execute code on the same device under a different account. On Android, even apps without explicit permissions can exploit these notifications.

Specific Vulnerabilities Across Platforms

On Linux, even without permission to monitor a specific file, a user can track changes by observing the encompassing directory, provided it is accessible. This method can reveal when keys are pressed, although not the specific keys. Historical research indicates that keystroke intervals can suggest what is being typed, with accuracy reaching up to 100% in trials.

Further attacks on Linux include website fingerprinting by examining system fonts loaded by Firefox, achieving an 87.9% accuracy rate for top sites. Additionally, a simulated password prompt attack was conducted on the KDE Plasma desktop, exploiting the system’s authentication procedures.

Impact on Android and Windows Platforms

During their Android tests on Google Pixel and Samsung Galaxy devices, researchers found apps could monitor another app’s storage modifications without permissions. This method uncovered activities such as file transfers and deletions within WhatsApp.

In Windows, the primary concern is the ability to oversee changes at the system drive’s root, exposing file paths from all users’ directories. This flaw enables real-time tracking of website visits, with a 97.8% accuracy rate for Firefox and 48.5% for Edge.

Current Mitigations and Future Outlook

While partial mitigations have been implemented in the Linux kernel to address critical vulnerabilities, similar fixes for Android and macOS remain unreported. Microsoft contends that the behavior in question does not constitute a security flaw, as it requires pre-existing local code execution capabilities.

Microsoft advises users to follow security best practices, including restricting local access to trusted individuals and maintaining updated systems. The researchers have shared proof-of-concept code online and note no known real-world exploitation of these vulnerabilities.

Security Week News Tags:Android, Cybersecurity, data privacy, file notification, Hacking, Linux, macOS, system vulnerability, tech news, user data leak, Windows

Post navigation

Previous Post: Bitget Loses $351.6M in Hacker Breach, Suspects North Korea
Next Post: Kosovo National Admits Guilt in Rydox Cybercrime Case

Related Posts

FortiBleed Campaign Compromises 86,000 Fortinet Devices FortiBleed Campaign Compromises 86,000 Fortinet Devices Security Week News
North Korean Hackers Steal 5M from DeFi Platform North Korean Hackers Steal $285M from DeFi Platform Security Week News
GlassWorm Botnet Dismantled by Cybersecurity Experts GlassWorm Botnet Dismantled by Cybersecurity Experts Security Week News
OpenAI’s New Tool and Cybersecurity Updates OpenAI’s New Tool and Cybersecurity Updates Security Week News
Popular Scraping Tool’s NPM Package Compromised in Supply Chain Attack Popular Scraping Tool’s NPM Package Compromised in Supply Chain Attack Security Week News
CISA Employs AI to Enhance Federal Software Security CISA Employs AI to Enhance Federal Software Security Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Kosovo National Admits Guilt in Rydox Cybercrime Case
  • File Notification Systems Leak User Data on Major OS
  • Bitget Loses $351.6M in Hacker Breach, Suspects North Korea
  • Ethereum Bridge Exploit Drains Payy Network Funds
  • Roundcube Vulnerability Exploitation Alert: SQL Injection Risk

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Kosovo National Admits Guilt in Rydox Cybercrime Case
  • File Notification Systems Leak User Data on Major OS
  • Bitget Loses $351.6M in Hacker Breach, Suspects North Korea
  • Ethereum Bridge Exploit Drains Payy Network Funds
  • Roundcube Vulnerability Exploitation Alert: SQL Injection Risk

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark