{"id":2934,"date":"2021-06-01T20:07:26","date_gmt":"2021-06-02T01:07:26","guid":{"rendered":"https:\/\/truxgoservers.com\/blog\/?p=2934"},"modified":"2021-06-01T20:07:27","modified_gmt":"2021-06-02T01:07:27","slug":"epub-electronic-reading-system-risks","status":"publish","type":"post","link":"https:\/\/truxgoservers.com\/blog\/epub-electronic-reading-system-risks\/","title":{"rendered":"EPUB electronic reading system risks"},"content":{"rendered":"\n<p>EPUB is an e-book file format with the extension .epub that can be downloaded and read on devices such as smartphones, tablets, computers or e-readers. EPUB format is mainly based on XHTML and CSS (Cascading Style Sheets) to build e-books, and navigation engines are often used to render their content. However, this gives e-book reading systems similar vulnerabilities to web browsers which is concerning.<\/p>\n\n\n\n<p>According to a research paper (PDF) by Gertjan Franken, Tom Van Goethem, and Wouter Joosen of the imec-DistriNet research group, almost none of the JavaScript-compliant reading systems they analyzed adhered correctly to the safety recommendations of the EPUB specification. . Using a semi-automated benchmark, available on GitHub, the researchers found that 16 of the 97 systems examined allowed an EPUB to leak information about the user&#8217;s file system and, in eight cases, extract the contents of the file.<\/p>\n\n\n\n<p>Attackers, they warn, could achieve full compromise of a user&#8217;s system by exploiting specific aspects of the read systems implementation. &#8220;Of course, the importance depends on the platform that is used, e-readers generally do not contain confidential files but, the thing changes with smartphones as they can contain private images of users.<\/p>\n\n\n\n<p>One thing we can keep in mind in this little hint is that compared to PDF and other formats, attackers rarely use epub. If you want to detect suspicious content (i.e. JavaScript) manually, you can start with any hex editor and then you can write your own yara rules if necessary. Of course, if JavaScript is present, that doesn&#8217;t mean it has to be malicious, but it can be a topic of investigation.<\/p>\n\n\n\n<p>Check also:<br><a href=\"https:\/\/truxgoservers.com\/blog\/what-should-we-know-about-security-with-javascript\/\">What should we know about security with JavaScript<\/a><br><a href=\"https:\/\/truxgoservers.com\/blog\/pdf-files-why-they-are-so-dangerous\/\">PDF Files, Why They Are So Dangerous?<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>EPUB is an e-book file format with the extension .epub that can be downloaded and read on devices such as smartphones, tablets, computers or e-readers. EPUB format is mainly based on XHTML and CSS (Cascading Style Sheets) to build e-books, and navigation engines are often used to render their content. However, this gives e-book reading [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":2935,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[10],"tags":[36],"class_list":["post-2934","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cybersecurity","tag-cybersecurity"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.4 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>EPUB electronic reading system risks - Truxgo Server Blog<\/title>\n<meta name=\"description\" content=\"The electronic book file formats contain several flaws and vulnerabilities, such as PDF, but today we are talking about one called EPUB.....\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/truxgoservers.com\/blog\/epub-electronic-reading-system-risks\/\" \/>\n<meta property=\"og:locale\" content=\"es_MX\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"EPUB electronic reading system risks - Truxgo Server Blog\" \/>\n<meta property=\"og:description\" content=\"The electronic book file formats contain several flaws and vulnerabilities, such as PDF, but today we are talking about one called EPUB.....\" \/>\n<meta property=\"og:url\" content=\"https:\/\/truxgoservers.com\/blog\/epub-electronic-reading-system-risks\/\" \/>\n<meta property=\"og:site_name\" content=\"Truxgo Server Blog\" \/>\n<meta property=\"article:published_time\" content=\"2021-06-02T01:07:26+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2021-06-02T01:07:27+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2021\/06\/EPUB.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"672\" \/>\n\t<meta property=\"og:image:height\" content=\"378\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Truxgo\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Escrito por\" \/>\n\t<meta name=\"twitter:data1\" content=\"Truxgo\" \/>\n\t<meta name=\"twitter:label2\" content=\"Tiempo de lectura\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutos\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/epub-electronic-reading-system-risks\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/epub-electronic-reading-system-risks\\\/\"},\"author\":{\"name\":\"Truxgo\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#\\\/schema\\\/person\\\/8b409c26449db6aa09724b45331e333e\"},\"headline\":\"EPUB electronic reading system risks\",\"datePublished\":\"2021-06-02T01:07:26+00:00\",\"dateModified\":\"2021-06-02T01:07:27+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/epub-electronic-reading-system-risks\\\/\"},\"wordCount\":290,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/epub-electronic-reading-system-risks\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2021\\\/06\\\/EPUB.jpg\",\"keywords\":[\"Cybersecurity\"],\"articleSection\":[\"Cybersecurity\"],\"inLanguage\":\"es\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/epub-electronic-reading-system-risks\\\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/epub-electronic-reading-system-risks\\\/\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/epub-electronic-reading-system-risks\\\/\",\"name\":\"EPUB electronic reading system risks - Truxgo Server Blog\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/epub-electronic-reading-system-risks\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/epub-electronic-reading-system-risks\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2021\\\/06\\\/EPUB.jpg\",\"datePublished\":\"2021-06-02T01:07:26+00:00\",\"dateModified\":\"2021-06-02T01:07:27+00:00\",\"description\":\"The electronic book file formats contain several flaws and vulnerabilities, such as PDF, but today we are talking about one called EPUB.....\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/epub-electronic-reading-system-risks\\\/#breadcrumb\"},\"inLanguage\":\"es\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/epub-electronic-reading-system-risks\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"es\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/epub-electronic-reading-system-risks\\\/#primaryimage\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2021\\\/06\\\/EPUB.jpg\",\"contentUrl\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2021\\\/06\\\/EPUB.jpg\",\"width\":672,\"height\":378},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/epub-electronic-reading-system-risks\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"EPUB electronic reading system risks\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/\",\"name\":\"Truxgo Server Blog\",\"description\":\"Cloud Server and Hosting Tutorials.\",\"publisher\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"es\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#organization\",\"name\":\"Truxgo Server Blog\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"es\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/08\\\/cropped-truxgo-logo-blanco.png\",\"contentUrl\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/08\\\/cropped-truxgo-logo-blanco.png\",\"width\":1250,\"height\":278,\"caption\":\"Truxgo Server Blog\"},\"image\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"}},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#\\\/schema\\\/person\\\/8b409c26449db6aa09724b45331e333e\",\"name\":\"Truxgo\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"es\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g\",\"caption\":\"Truxgo\"},\"sameAs\":[\"https:\\\/\\\/truxgoservers.com\\\/blog\"],\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/author\\\/truxgo\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"EPUB electronic reading system risks - Truxgo Server Blog","description":"The electronic book file formats contain several flaws and vulnerabilities, such as PDF, but today we are talking about one called EPUB.....","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/truxgoservers.com\/blog\/epub-electronic-reading-system-risks\/","og_locale":"es_MX","og_type":"article","og_title":"EPUB electronic reading system risks - Truxgo Server Blog","og_description":"The electronic book file formats contain several flaws and vulnerabilities, such as PDF, but today we are talking about one called EPUB.....","og_url":"https:\/\/truxgoservers.com\/blog\/epub-electronic-reading-system-risks\/","og_site_name":"Truxgo Server Blog","article_published_time":"2021-06-02T01:07:26+00:00","article_modified_time":"2021-06-02T01:07:27+00:00","og_image":[{"width":672,"height":378,"url":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2021\/06\/EPUB.jpg","type":"image\/jpeg"}],"author":"Truxgo","twitter_card":"summary_large_image","twitter_misc":{"Escrito por":"Truxgo","Tiempo de lectura":"2 minutos"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/truxgoservers.com\/blog\/epub-electronic-reading-system-risks\/#article","isPartOf":{"@id":"https:\/\/truxgoservers.com\/blog\/epub-electronic-reading-system-risks\/"},"author":{"name":"Truxgo","@id":"https:\/\/truxgoservers.com\/blog\/#\/schema\/person\/8b409c26449db6aa09724b45331e333e"},"headline":"EPUB electronic reading system risks","datePublished":"2021-06-02T01:07:26+00:00","dateModified":"2021-06-02T01:07:27+00:00","mainEntityOfPage":{"@id":"https:\/\/truxgoservers.com\/blog\/epub-electronic-reading-system-risks\/"},"wordCount":290,"commentCount":0,"publisher":{"@id":"https:\/\/truxgoservers.com\/blog\/#organization"},"image":{"@id":"https:\/\/truxgoservers.com\/blog\/epub-electronic-reading-system-risks\/#primaryimage"},"thumbnailUrl":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2021\/06\/EPUB.jpg","keywords":["Cybersecurity"],"articleSection":["Cybersecurity"],"inLanguage":"es","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/truxgoservers.com\/blog\/epub-electronic-reading-system-risks\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/truxgoservers.com\/blog\/epub-electronic-reading-system-risks\/","url":"https:\/\/truxgoservers.com\/blog\/epub-electronic-reading-system-risks\/","name":"EPUB electronic reading system risks - Truxgo Server Blog","isPartOf":{"@id":"https:\/\/truxgoservers.com\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/truxgoservers.com\/blog\/epub-electronic-reading-system-risks\/#primaryimage"},"image":{"@id":"https:\/\/truxgoservers.com\/blog\/epub-electronic-reading-system-risks\/#primaryimage"},"thumbnailUrl":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2021\/06\/EPUB.jpg","datePublished":"2021-06-02T01:07:26+00:00","dateModified":"2021-06-02T01:07:27+00:00","description":"The electronic book file formats contain several flaws and vulnerabilities, such as PDF, but today we are talking about one called EPUB.....","breadcrumb":{"@id":"https:\/\/truxgoservers.com\/blog\/epub-electronic-reading-system-risks\/#breadcrumb"},"inLanguage":"es","potentialAction":[{"@type":"ReadAction","target":["https:\/\/truxgoservers.com\/blog\/epub-electronic-reading-system-risks\/"]}]},{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/truxgoservers.com\/blog\/epub-electronic-reading-system-risks\/#primaryimage","url":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2021\/06\/EPUB.jpg","contentUrl":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2021\/06\/EPUB.jpg","width":672,"height":378},{"@type":"BreadcrumbList","@id":"https:\/\/truxgoservers.com\/blog\/epub-electronic-reading-system-risks\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/truxgoservers.com\/blog\/"},{"@type":"ListItem","position":2,"name":"EPUB electronic reading system risks"}]},{"@type":"WebSite","@id":"https:\/\/truxgoservers.com\/blog\/#website","url":"https:\/\/truxgoservers.com\/blog\/","name":"Truxgo Server Blog","description":"Cloud Server and Hosting Tutorials.","publisher":{"@id":"https:\/\/truxgoservers.com\/blog\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/truxgoservers.com\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"es"},{"@type":"Organization","@id":"https:\/\/truxgoservers.com\/blog\/#organization","name":"Truxgo Server Blog","url":"https:\/\/truxgoservers.com\/blog\/","logo":{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/truxgoservers.com\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2020\/08\/cropped-truxgo-logo-blanco.png","contentUrl":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2020\/08\/cropped-truxgo-logo-blanco.png","width":1250,"height":278,"caption":"Truxgo Server Blog"},"image":{"@id":"https:\/\/truxgoservers.com\/blog\/#\/schema\/logo\/image\/"}},{"@type":"Person","@id":"https:\/\/truxgoservers.com\/blog\/#\/schema\/person\/8b409c26449db6aa09724b45331e333e","name":"Truxgo","image":{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/secure.gravatar.com\/avatar\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g","caption":"Truxgo"},"sameAs":["https:\/\/truxgoservers.com\/blog"],"url":"https:\/\/truxgoservers.com\/blog\/author\/truxgo\/"}]}},"_links":{"self":[{"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/posts\/2934","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/comments?post=2934"}],"version-history":[{"count":3,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/posts\/2934\/revisions"}],"predecessor-version":[{"id":2945,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/posts\/2934\/revisions\/2945"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/media\/2935"}],"wp:attachment":[{"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/media?parent=2934"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/categories?post=2934"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/tags?post=2934"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}