Skip to content

[exploit] bug that fully bypasses the apps purpose #172

@Maelstrom1312

Description

@Maelstrom1312

if you are to enter a portion of the pin code and then swipe up into the view that shows all current active applications, you can then go to the locked app without the app lock reinstating itself.
I have tested the bug across multiple different applications which I have locked and the exploit works on each one.
the bug occurs both when you have auto unlock enabled and disabled.

I tested the exploit on the standard accessibility service for the back end implementation and the exploit it not successful. the exploit only works on the usage statistics back end implementation.

I have restarted the device and that does not fix the exploit.

possibly pertinent information: my operating system is GrapheneOS.
below is an attached video of the exploit. (I was unable to allow the screen recording to display the act of entering an incomplete pin but the showcase is still self-evident)

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions