This amazing technology can retrieve pixelated words from redacted documents

Man using laptop with a cup of coffee
(Image credit: Shutterstock / SFIO CRACHO)

If you've been using pixelation to redact sensitive information, you may want to use a different method instead as a security researcher has developed a new way to successfully recover pixelated words from redacted documents.

Lead researcher at the security firm Bishop Fox, Dan Petro has published a new blog post detailing how he was able to completely recover text from an image that was redacted suing the pixelation method.

While both news outlets and researchers often using pixelation or blurring to hide text in sensitive images published online, Petro has demonstrated that it is much safer to use opaque bars to hide text instead. 

Petro began his research into how retrieve pixelated words from redacted documents after Jumpsec Labs put forth an open challenge for anyone to decipher the text in a pixelated image. After studying a number of pixelation and deobfuscation techniques, he came up with a solution for the challenge and sent his findings to Jumpsec Labs.

Unredacter

While there are a number of existing photo editing tools for enhancing pixelated images of people or landscapes, up until now there hasn't been a tool capable of recovering text found in pixelated images.

For this reason, Petro and Bishop Fox have released a new open source tool on GitHub called Unredacter. The tool is able to correctly reconstruct a document's original text in its entirety if it was redacted using pixelation.

Petro provided further insights on how users that need to redact text in a document should do so in his blog post, saying:

“The bottom line is that when you need to redact text, use black bars covering the whole text. Never use anything else. No pixelization, no blurring, no fuzzing, no swirling. Oh, and be sure to actually edit the text as an image. Don’t make the mistake of changing your Word document so that it has black background with black text.” 

Thankfully, many of the best PDF editors such as Adobe Acrobat DC already provide the ability to redact text in sensitive business documents.

Via BleepingComputer

Anthony Spadafora

After working with the TechRadar Pro team for the last several years, Anthony is now the security and networking editor at Tom’s Guide where he covers everything from data breaches and ransomware gangs to the best way to cover your whole home or business with Wi-Fi. When not writing, you can find him tinkering with PCs and game consoles, managing cables and upgrading his smart home. 

Read more
Two photos of a girl behind a window, one with reflections removed with Photoshop
Photoshop gets the next big thing in AI photography – a tool that makes your unwanted reflections vanish
Angry emoji
Not even emoji are safe from hackers - smiley faces can be hijacked to hide data, study claims
Location Data
Cloudflare CDN flaw could expose user location simply by sending an image
Robotic hand clicking on captcha 'I am not a robot'.
"A tracking cookie farm for profit" - report claims reCAPTCHA has caused 819 million hours of wasted human time, and billions in Google profits
OneDrive on a Laptop
Microsoft One Drive for Business might not be storing your data as securely as you might hope
Optical system for data encryption
Is it quantum-resistant? Researchers create 'uncrackable' encryption system by pairing AI and holograms produced by laser
Latest in Security
Woman using iMessage on iPhone
UK government guidelines remove encryption advice following Apple backdoor spat
HTTPS in a browser address bar
Malicious "polymorphic" Chrome extensions can mimic other tools to trick victims
ransomware avast
Hackers spotted using unsecured webcam to launch cyberattack
Pirate skull cyber attack digital technology flag cyber on on computer CPU in background. Darknet and cybercrime banner cyberattack and espionage concept illustration.
Microsoft reveals over a million PCs hit by malvertising campaign
China
Chinese hackers who targeted key US infrastructure charged by Justice Department
linkedin
Watch out - that LinkedIn email could be a fake, laden with malware
Latest in News
Android 16 logo on a phone
Android 16 beta users are reporting major battery drain issues – but I’m not too worried about it
Woman holding phone in field with Spotify app onscreen
The Spotify bug that shows ads to Premium subscribers has finally been fixed - for now at least
PC Gamer looking happy
AMD might go for Nvidia’s jugular in Q2 with a faster RX 9070 ‘Extreme’ GPU that could leave the RTX 5070 Ti in the dust
Woman using iMessage on iPhone
UK government guidelines remove encryption advice following Apple backdoor spat
Man adjusting settings on Garmin Fenix 6 watch
Garmin Fenix 6, Enduro, Marq and Tactix watches are getting fixes to solve some frustrating problems – here's what's new
The Samsung Galaxy S24 Ultra with S Pen drawn, demonstrating Circle to Search
Samsung says ‘millions’ are using Galaxy AI regularly, despite surprising survey results