Apple's Vision Pro has a way of showing the world a virtual version of you while you interact with others in virtual reality. Unfortunately,high Eroticism this very feature – called Persona – could've been used by hackers to steal a Vision Pro user's sensitive data.
The security flaw was discovered by a group of six computer scientists from the University of Florida's Department of Computer Science, and it was first reported on by Wired.
The GAZEploit attack, as it was dubbed by the researchers, works by tracking the eye movements of a user's Persona to identify when they're typing something on the Vision Pro's virtual keyboard. The researchers discovered that users tend to direct their gaze onto specific keys that they're about to click, and were able to construct an algorithm that identified what the users were typing. The results were quite accurate; for example, the researchers were able to identify the correct letters of users' passwords 77 percent of the time. When it came to detecting what people were typing in a message, the results were accurate 92 percent of the time.
The researchers disclosed the vulnerability to Apple back in April, and Apple fixed it in visionOS 1.3, which came out in July. In the release notes, Apple says that the flaw enabled inputs to the virtual keyboard to be inferred from Persona.
"The issue was addressed by suspending Persona when the virtual keyboard is active," Apple wrote in the release notes. Vision Pro users who haven't yet updated to the latest version are advised to do so as soon as possible.
While simply disabling Persona while the user is typing was a pretty simple fix, the flaw does raise the question of just how much info a malicious hacker could infer just by observing a virtual version of you.
SEE ALSO: Apple Vision Pro: I watched a Billie Eilish concert in Bora Bora — and I didn't need to spend a pennyThe researchers said that the attack hasn't been used against someone using Personas in the real world. But what makes this attack particularly dangerous is that it only requires a video recording of someone's Persona while the person was typing, meaning an attacker could still use it on an older video. It seems that the only way to mitigate this issue is to erase any publicly available videos where your Persona is visible while typing; we've reached out to Apple for clarification on what can be done to protect your data.
Topics Apple Cybersecurity
Ticketmaster apologies to Taylor Swift and her fans for Eras Tour fiascoHulu and Disney+ are merging into one appVito Acconci, 1940–2017What if Twitter dies? 11 things I'll do with my time if it kicks the bucket.Omegle changed cybersex forever, for better or worseWhen Dreaming Was MindStaff Picks: McGoorty the Pool Shark, Sarah Gerard, Percival EverettKhaby Lame, TikTok's mostAndy Cohen talks Elon Musk, Twitter drama, and Wordle scoresThe 2022 World Cup in Qatar is going viral for all the wrong reasonsTicketmaster disaster: The 11 best tweets from Taylor Swift fans' very bad weekWhat should you buy on Black Friday? Here's what we want to see on sale.Bayou Fever: Romare Bearden’s Dynamic CollagesRose Gold: Sara Cwynar on Consumers and DesireRevisited: Robert Lowell’s “Beyond the Alps”“I Want to Go a Little Hotel…and Work at What Only Pleases Me”Major ChatGPT outage due to DDoS attackVito Acconci, 1940–2017Vito Acconci, 1940–2017Bissell EggoVac giveaway ahead of Black Friday Google News bug chews up massive amounts of data in the background The first Amazon Go store in NYC will be across from the World Trade Center Nintendo's new program to get Labo into classrooms is a no Elon Musk's high Lyft acquires Blue Vision Labs to help develop self Trump refuses to give up his iPhone despite Chinese and Russian spying Most Stuf Oreos are coming and everyone's stomachs are so ready Aly Raisman's tear Californian news site apologises for 'insensitive' headline about Simone Manuel Reddit's Olympic subreddit should be your homepage Katy Perry unleashed a feline chatbot to help fans get their paws on her new perfume Please behold Michael Phelps and Ryan Lochte eating ice bath spaghetti Amazing! Master’s student uses clickbait to nail his thesis Ford's self HTC's blockchain phone, the Exodus 1, is now available for pre Pirates fan attempts to catch foul ball, catches face full of nachos instead Let these slow Chinese swimmer Ning Zetao remains No. 1 with his fandom Qualcomm's new audio chip will fuel an explosion of Alexa headphones More than half of women in advertising have faced sexual harassment, report says
1.4195s , 10193.7890625 kb
Copyright © 2025 Powered by 【high Eroticism】,Unobstructed Information Network