您的位置: 首页 > 资讯

CertiK Engineer Recognized for Identifying Vulnerability in Apple Vision Pro’s Eye-Tracking Technolo

2024-09-22 来源:CertiK

NEW YORK, Sept. 20, 2024 (GLOBE NEWSWIRE) -- CertiK, the industry-leading Web3 security firm, is proud to announce that Haoqi Shan, a distinguished member of CertiK’s engineering team, has been recognized for his critical role in identifying a vulnerability in Apple’s Vision Pro mixed reality headset. The findings, conducted in collaboration with five other computer scientists, revealed how exposed eye-tracking data from Apple’s Vision Pro could be exploited to decipher sensitive information, such as passwords, PINs, and messages.

In the study, shared exclusively with Wired, the attack — coined “GAZEploit” — allowed the researchers to reconstruct what people typed on the Vision Pro’s virtual keyboard by analyzing their eye movements. By observing these patterns, the team could accurately determine what individuals typed, achieving 92% accuracy in reconstructing messages and 77% accuracy in passwords.

The vulnerability was originally reported to Apple in April 2024, and the company issued a software update to address the issue in July 2024. This research demonstrates the increasing privacy risks associated with emerging biometric technologies and the need for robust security measures to protect companies and their users.

September 17 marks the sixth time Apple has publicly acknowledged CertiK for assisting the company in discovering and fixing vulnerabilities; CertiK therefore remains the Web3 security agency most publicly thanked by Apple.

As a trusted authority in the cybersecurity space, CertiK continues to lead the way in protecting critical technologies and sensitive data. By cultivating a culture of trust and innovation, CertiK aims to set new cybersecurity benchmarks and exceed expectations by customers who rely on its products for safety and security.

Contact

 
Elisa Yiting Xu
yiting@certik.com
07-12 重庆三峡职业学院智能制造学院暑期“三下乡”助力乡村振兴
重庆三峡职业学院智能制造学院暑期“三下乡”助力乡村振兴
近日,重庆三峡职业学院智能制造学院的“同心筑梦,智创青春”基层 [详细]
07-16 TOPCon VS BC 实证数据出炉:1.71%发电增益,优势显著
TOPCon VS BC 实证数据出炉:1.71%发电增益,优势显著
在全球各种场景和气象条件下,TOPCon都表现出可靠性高、性能稳定及 [详细]
03-29 WhatsApp协议号群发,WS协议注册助你快速引流营销
WhatsApp协议号群发,WS协议注册助你快速引流营销
在当前的数字营销时代,WhatsApp作为全球最受欢迎的即时通讯平台之 [详细]
03-29 华为云持续做强伙伴生态,为行业数字化注入新机会
华为云持续做强伙伴生态,为行业数字化注入新机会
中国东莞- MediaOutReachNewswire -2024年3月28日-在3月26-27 [详细]