Forwarded from The Hacker News
🚨 Hackers are actively exploiting a critical flaw in CrushFTP (CVE-2025-54309, CVSS 9.0) to gain admin access via HTTPS—no DMZ needed.
They reverse engineered a patch and struck fast.
The worst part? Many systems are still exposed.
Details here → https://thehackernews.com/2025/07/hackers-exploit-critical-crushftp-flaw.html
They reverse engineered a patch and struck fast.
The worst part? Many systems are still exposed.
Details here → https://thehackernews.com/2025/07/hackers-exploit-critical-crushftp-flaw.html
Forwarded from The Hacker News
🚨 Hackers hijacked popular npm packages using phishing emails that mimicked npm support.
They published malware directly—no GitHub commits, no PRs.
One version tries to run a DLL for remote code execution.
Check if you’re affected ↓ https://thehackernews.com/2025/07/malware-injected-into-6-npm-packages.html
They published malware directly—no GitHub commits, no PRs.
One version tries to run a DLL for remote code execution.
Check if you’re affected ↓ https://thehackernews.com/2025/07/malware-injected-into-6-npm-packages.html
Forwarded from The Hacker News
⚠️ A critical UNPATCHED zero-day in Microsoft SharePoint (CVE-2025-53770) is being massively exploited right now.
At least 75 orgs breached—including major companies and governments.
Here’s what you need to know ↓ https://thehackernews.com/2025/07/critical-microsoft-sharepoint-flaw.html
At least 75 orgs breached—including major companies and governments.
Here’s what you need to know ↓ https://thehackernews.com/2025/07/critical-microsoft-sharepoint-flaw.html
Forwarded from Hacker News
IT Notes
Make Your Own Backup System – Part 1: Strategy Before Scripts
When a datacenter fire threatened 142 of my servers, my backup strategy had them back online in hours. This post shares my personal philosophy on creating a resilient system, focusing on the crucial planning that must happen before you write a single script.
Forwarded from Hacker News
Orioledb
OrioleDB beta12: features and benchmarks | OrioleDB
Since our last public update, OrioleDB has continued to evolve with a series of new releases. These updates refine the core engine, extend functionality, and improve performance across a range of workloads. Together, they move us closer to a beta release…
Forwarded from Hacker News
Phone number for SMS verifications, Sim Services
Recommended: Providers which accept Monero (XMR) and don’t require verification:
(Iceland based) https://crypton.sh [Tor Mirror] [Archive.org]
(Ukraine based) https://virtualsim.net/ [Archive.org]
(Many countries) https://silent.link/ [Archive.org] (my favorite)
Do require e-mail verification, but accept Monero:
(US California based) https://mobilesms.io [Archive.org]
(Germany based) https://www.sms77.io/ [Archive.org]
(Russia based) https://onlinesim.ru/ [Archive.org]
There are some other possibilities listed here https://cryptwerk.com/companies/sms/xmr/ [Archive.org]. Use at your own risk.
Now, what if you have no money? Well, in that case, you will have to try your luck with free services and hope for the best. Here are some examples, use at your own risk:
https://oksms.org
https://smspva.com
https://sms24.me
Disclaimer: We cannot vouch for any of these providers. We recommend doing it yourself physically. In this case, you will have to rely on the anonymity of Monero and you should not use any service that requires any kind of identification using your real identity. Please do read Appendix B2: Monero Disclaimer.
It is more convenient, cheaper, and less risky to just get a pre-paid SIM card from one of the physical places that still sell them for cash without ID.
http://onlinesim.io
https://getsms.one
https://smsplaza.io
https://5sim.net
https://www.smspool.net
GIANT LIST OF NON-VOIP SERVICES FOR TEXT VERIFICATION
Paid
https://smsplaza.io/
https://smska.us/
https://onlinesim.ru/
http://smspva.com/
https://sms-activate.ru/en/
https://sms-online.pro/
https://cheapsms.ru/en
https://5sim.net/
https://getsms.online/en/
https://give-sms.com/
http://virtualsms.ru/
http://simsms.org/
https://www.textverified.com/
https://pvadeals.com/
https://truverifi.com/numbers/
https://verifywithsms.com/
https://mobilesms.io/
https://pvadeals.com/
https://pvacodes.com/
https://pvapins.com/
https://pvaverify.com/
https://www.getsmscode.com/
https://www.smscodes.io/
https://codesverify.com/user/
https://smsverifyonline.com/
http://instantnumbers.com/
https://mobilesms.io/
https://smspool.net/
https://autofications.com/
http://www.grabsms.com/
Free
https://www.freesmscodes.com
https://receive-sms.cc/
https://7sim.net/
https://www.receivesms.org/
https://quackr.io/
crypton.sh
Crypton.sh - Secure physical phone number in the cloud
Get a secure physical phone number, virtual number, or eSIM data plan with end-to-end encryption. 100% encrypted messages, no email required, privacy-first SMS service with global coverage.
Forwarded from Hacker News
#A16 #Unofficial #TD #GSI #VoltageOS #AOSP
Build Date: 2025 07 19
July Security Patch
VoltageOS 5.0 | A16 QPR0 | TREBLE GSI UNOFFICIAL-signed
FOD IS BROKEN
Changelog:
Note
SCREENSHOTS - LINK
SUPPORT GROUP - LINK
Maintainer: Doze-off
Download: LINK
@TrebleGsis_PrivacySecure_Chat
@TrebleGsis_PrivacySecure_Channel
Build Date: 2025 07 19
July Security Patch
VoltageOS 5.0 | A16 QPR0 | TREBLE GSI UNOFFICIAL-signed
FOD IS BROKEN
Changelog:
July security patch
Added Patch for incoming calls (but this still depends on your vendor).
Added Patch for installing and uninstalling apps and reboots and RIL.
Added Overlay for hotwav w10 pro
Added overlay for samsung s22 ultra
Added overlay for Infinity note 40
Treble Settings (Added translation pt-br And buttons)
FreeForm
Note
Use AppStore for GMS, PlayStore.. - LINK
by faith in christ, this is a gsi with fix patches from the trebledroid community, but even so it all depends on your vendor and kernel, and I'm not a magician to fix all devices.
If you don't like it, try another gsi from another developer
SCREENSHOTS - LINK
SUPPORT GROUP - LINK
Maintainer: Doze-off
Download: LINK
@TrebleGsis_PrivacySecure_Chat
@TrebleGsis_PrivacySecure_Channel
#A16 #Unofficial #TD #GSI #MistOS #LineageOS
Build Date: 2025 07 19
July Security Patch
MistOS 4.0 | A16 QPR0 | TREBLE GSI UNOFFICIAL-signed
FOD IS BROKEN
Changelog:
Note
SCREENSHOTS - LINK
SUPPORT GROUP - LINK
Maintainer: Doze-off
Download: LINK
@TrebleGsis_PrivacySecure_Chat
@TrebleGsis_PrivacySecure_Channel
Build Date: 2025 07 19
July Security Patch
MistOS 4.0 | A16 QPR0 | TREBLE GSI UNOFFICIAL-signed
FOD IS BROKEN
Changelog:
July security patch
Sync latest source of TrebleDroid
Sync latest source of MistOS
New treble app interface, with material3 with buttons.
Treble app is now in the launcher, but also in settings/system (the reason for this is that the app disappears for some devices)
Added Patch for incoming calls (but this still depends on your vendor).
Added Patch for installing and uninstalling apps and reboots and RiL.
Note
by faith in christ, this is a gsi with fix patches from the trebledroid community, but even so it all depends on your vendor and kernel, and I'm not a magician to fix all devices.
If you don't like it, try another gsi from another developer
SCREENSHOTS - LINK
SUPPORT GROUP - LINK
Maintainer: Doze-off
Download: LINK
@TrebleGsis_PrivacySecure_Chat
@TrebleGsis_PrivacySecure_Channel
No problem, there is this 12to11 tool that will replace wayland and you can use hyprland!
https://codeberg.org/museoa/12to11
https://codeberg.org/museoa/12to11
Codeberg.org
12to11
Tool for running Wayland applications on an X server.
Code converted from subversion at svn://svn.code.sf.net/p/twelveto11/code/.
Mirrored from https://git.linuxping.win/12to11/12to11
Code converted from subversion at svn://svn.code.sf.net/p/twelveto11/code/.
Mirrored from https://git.linuxping.win/12to11/12to11
No deleted account found from
66 scanned users from this group 🚫👻Forwarded from Hacker News
Brussels Signal
Digital vassals? French Government ‘exposes citizens’ data to US’
France’s deepening reliance on US tech giants is raising alarms about digital sovereignty and exposing public data to foreign jurisdictions. In a French Senate report on economic and digital…