Nov. 15, 2022, 2:20 a.m. | Maxwell Bland, Anushya Iyer, Kirill Levchenko

cs.CR updates on arXiv.org arxiv.org

In this work we find that many current redactions of PDF text are insecure
due to non-redacted character positioning information. In particular,
subpixel-sized horizontal shifts in redacted and non-redacted characters can be
recovered and used to effectively deredact first and last names. Unfortunately
these findings affect redactions where the text underneath the black box is
removed from the PDF.


We demonstrate these findings by performing a comprehensive vulnerability
assessment of common PDF redaction types. We examine 11 popular PDF redaction …

beyond pdf redaction text

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Information Security Engineers

@ D. E. Shaw Research | New York City

Program Associate, Cyber Risk

@ Kroll | Toronto, ONT, Canada

Cybersecurity Operations Engineer 2

@ Humana | Remote US

Vice President - Lead Security Engineer (SECS04)

@ JPMorgan Chase & Co. | Columbus, OH, United States

Security Specialist

@ BGIS | Markham, ON, Canada