GhanaStar
  • News
  • Sports
  • Entertainment
  • Politics
  • Business
  • Music
No Result
View All Result
GhanaStar
  • News
  • Sports
  • Entertainment
  • Politics
  • Business
  • Music
No Result
View All Result
GhanaStar
No Result
View All Result
Home News

Subtitling Systems Contain ‘widespread’ Security Threat

May 27, 2017
in News
Share on FacebookShare on Twitter

Film fans could be vulnerable to attack by hackers who hide malicious code inside files that provide subtitles, a security firm has warned.

You Might Also Like

Why Ghana and Nigeria Were Not Invited to the Russia-Africa Summit

Two People Arrested in Connection with Death of X-Rated American IG Model, Tyger Booty

Ghana’s Parliament Erupts into Chaos as NDC MP whisks away Speaker’s seat

Checkpoint Software found loopholes in the way four popular media players handle subtitles.

Poor checking of subtitle files, the different formats they use and problems with the websites that store the files all introduced weaknesses, it said.

Checkpoint said it had reported the bugs it found to media player makers.

The researchers found the bugs by analysing how the VLC, Kodi, Popcorn Time and Strem.io media players handle subtitle files. All four programs have been downloaded hundreds of millions of times, suggesting a large number of people are vulnerable, they said.

Attackers who exploited the vulnerabilities found in the subtitling ecosystem would more than likely be able to completely take over a PC, tablet or smart TV, said Checkpoint. Attackers could steal information, carry out denial of service attacks or install ransomware.

In a blog detailing the findings, the security firm said it was one of the “most widespread, easily accessed and zero-resistance vulnerability [sic] reported in recent years”.

Typically, media players are programmed to automatically look online for files that can provide subtitles.

The players expect subtitle files to contain text only, so most do not look to see if anything malicious has been inserted instead, said the security firm.

In addition, the recommendation systems of the subtitle file stores could be manipulated, allowing attackers to ensure booby-trapped versions would be picked ahead of legitimate files, Checkpoint said.

The security problems are exacerbated by the large number of formats – more than 25 in total – used to prepare subtitle files. The media players tested by Checkpoint used many different methods of reading data from these formats, leaving them open to many different sorts of vulnerabilities.

“While the weakness doesn’t appear to have been exploited in real-world attacks, that such a glaring problem exists under everyone’s noses is wearying,” wrote John Dunn, a security researcher at Sophos.

Mr Dunn advised people to update their media player software as quickly as possible.

“The next time you play a movie on any device, make sure cyber-criminals aren’t playing you,” he said.

All four makers of the media players Checkpoint analysed have produced updated versions that do a better job of policing subtitle files.

However, the safer versions are not being provided automatically, suggesting many media players will remain vulnerable for some time to come.

Join GhanaStar.com to receive daily email alerts of breaking news in Ghana. GhanaStar.com is your source for all Ghana News. Get the latest Ghana news, breaking news, sports, politics, entertainment and more about Ghana, Africa and beyond.

(Via: CitiFM Online Ghana)

Tags: Checkpoint SoftwareCloud Computing ServicesComputer network securityComputer securitycomputingCryptographyCyberwarfareDenial-of-service attackhackerJohn DunnMalwaremedia player makersmedia player softwaremedia playersmedia players handle subtitle filesmedia players handle subtitlesNational securityrecommendation systemsSecurity engineeringSecurity hackersecurity researchersecurity researcher at SophosSophosSubtitleTechnology_Internet

Related News

Why Ghana and Nigeria Were Not Invited to the Russia-Africa Summit

Why Ghana and Nigeria Were Not Invited to the Russia-Africa Summit

by ghanastar
July 28, 2023
0

The Russia-Africa summit, which took place in St. Petersburg in July 2023, was notable for the absence of two of...

Two People Arrested in Connection with Death of X-Rated American IG Model, Tyger Booty

Two People Arrested in Connection with Death of X-Rated American IG Model, Tyger Booty

by ghanastar
January 2, 2022
0

The Ghana Police Service has announced the arrest of two persons in connection with the death of Julie Diane Williams,...

Ghana’s Parliament Erupts into Chaos as NDC MP whisks away Speaker’s seat

Ghana’s Parliament Erupts into Chaos as NDC MP whisks away Speaker’s seat

by ghanastar
December 1, 2021
0

Ghana's Paliament on Wednesday erupted into chaos with minority and majority members shoving and pushing each other. The heated confrontation...

Cedi records highest depreciation against dollar in 36 weeks

Cedi records highest depreciation against dollar in 36 weeks

by ghanastar
December 1, 2021
0

The local currency is back into free-fall mode against its major counterpart trading currency, the US dollar, as it records...

Next Post

I Prayed, Fasted For Kofi Adjorlolo and Lebene Breakup - Counsellor Lutterodt

Palestinian Prisoners In Israel Jails End Hunger Strike

Categories

  • Africa & World
  • African Music Lyrics Directory
  • Business
  • Business Directory
  • celebrities
  • Computing
  • Diaspora
  • Entertainment
  • Events
  • Feature
  • Featured
  • Ghana Elections 2016
  • Headlines
  • Health
  • International
  • Internet
  • Jobs
  • lifestyle
  • Music
  • News
  • Offbeat
  • Opinion
  • Politics
  • Profiles
  • Religion
  • Security
  • Seth Terkper
  • Smart Home
  • Social Networks
  • Sports
  • Technology
  • Top Stories
  • World News

Tags

accra addo africa Association football Banks - NEC business Business_Finance chairman Donald Trump economy education Entertainment_Culture environment Geography of Africa ghana Ghanaian people government Government of Ghana Human Interest John Dramani Mahama john mahama Law_Crime mahama minister MPs elected in the Ghanaian parliamentary election Nana Addo Nana Addo Dankwa Nana Akufo-Addo National Democratic Congress National Democratic Congress (NDC) New Patriotic Party New Patriotic Party (NPP) nigeria politics Politics of Ghana president Social Issues Social Media Social Media & Networking sports United Kingdom United Nations United States Vice President War_Conflict

Recent Posts

  • Government of Ghana Unveils Official Portraits of President John Dramani Mahama and Vice President Prof. Naana Jane Opoku-Agyemang
  • Who Is the Woman (Sheena Gakpe) in Sarkodie’s Latest Hit “No Sir” and Why Everyone Is Talking about It
List of Ghana Holidays for 2020
Ghana Geocoding
Ghana Cedis Exchange API
Ghana Maps Service
Toyota Cars Auto Auction History
  • African Music Lyrics Directory
  • Business Directory
  • Diaspora
  • Top Stories

All rights reserved © 2021 GhanaStar.com

No Result
View All Result
  • News
  • Sports
  • Entertainment
  • Politics
  • Business
  • Music

All rights reserved © 2021 GhanaStar.com