■■■□□ ProxyLib: Malicious Apps Caught Secretly Turning Android Phones into Proxies for Cybercriminals. https://thehackernews.com/2024/04/malicious-apps-caught-secretly-turning.html https://t.me/cKure/13772
All posts tagged cyber
April 1, 2024 at 01:16AM
Running ‘cat’ command to read a script is not safe. As a researcher points out. An interesting thread! https://twitter.com/0xAsm0d3us/status/1774534241084445020 https://t.me/cKure/13770
March 31, 2024 at 11:54PM
Inside the failed attempt to backdoor SSH globally — that got caught by chance. https://doublepulsar.com/inside-the-failed-attempt-to-backdoor-ssh-globally-that-got-caught-by-chance-bbfe628fafdd https://t.me/cKure/13768
March 31, 2024 at 11:53PM
■■■■■ forensictools: A toolkit designed for digital forensics. https://github.com/cristianzsh/forensictools?tab=readme-ov-file#download-and-usage https://securityonline.info/forensictools-a-toolkit-designed-for-digital-forensics https://t.me/cKure/13767
March 31, 2024 at 01:30PM
■■■■□ Supply-Chain attack: Red Hat on Friday released an “urgent security alert” warning that two versions of a popular data compression library called XZ Utils (previously LZMA Utils) have been backdoored with malicious code designed to allow unauthorized remote access. The software supply chain compromise, tracked as CVE-2024-3094, has a CVSS score of 10.0, indicating…
March 31, 2024 at 03:59AM
■□□□□ Signal clarifies that the bug was functional. It’s a bug in our phone number privacy+usernames implementation, fix coming soon. Hi! We’re confident this IS NOT a 0click attack. It’s a bug in our phone number privacy+usernames implementation, fix coming soon. I’ve asked OP to clarify/delete in service of minimizing harmful misinfo ❤️🙏 https://t.co/7X0BsReaXc —…
March 31, 2024 at 03:33AM
■■■■■ R2Frida – Radare2 And Frida Better Together. https://github.com/nowsecure/r2frida https://www.kitploit.com/2024/03/r2frida-radare2-and-frida-better.html https://t.me/cKure/13762
March 30, 2024 at 01:59PM
■■■■□ LPE exploit for CVE-2024-0582 (io_uring). https://github.com/ysanatomic/io_uring_LPE-CVE-2024-0582 https://t.me/cKure/13761
March 30, 2024 at 01:58PM
■■□□□ Nuclei v3.2.0: A versatile approach to conducting authenticated scans. https://blog.projectdiscovery.io/scanning-login-protected-targets-with-nuclei/ https://t.me/cKure/13760
March 30, 2024 at 01:46PM
■■□□□ Signal Messenger may have some functional or security issue. An interesting thread. https://twitter.com/doadam/status/1773679235913097680 https://t.me/cKure/13759
