Bug Type
Security
Reproduction steps
1- Open your TonHub.
2- Head to Settings then Backup keys.
3- Take a screenshot of the recovery phrase.
Actual result
The APP takes a screenshot with the recovery phrase visible (not black screened).
Expected result
Such a sensitive info should be black screened (such as in the android APP version of wallet.ton.org), this is because other APPs might have access to this screenshot. Or maybe the device has some spyware.
Suggested Severity
Vulnerability
Device
Smartphone (please complete the following information):
- Device: Redmi Note 7
- OS: Android 12
- Version 2.5.2