
Cryptographic vulnerabilities were found in five major end-to-end encrypted cloud storage providers, including Sync, pCloud, Seafile, Icedrive, and Tresorit, allowing malicious servers to inject files, tamper with content, and break confidentiality. The vulnerabilities were discovered in a malicious server setting, which is a realistic adversary model for E2EE cloud storage, and the findings ...