Privacy + Secure Tech Corner Channel ๐Ÿ›ก๏ธ
90 subscribers
6.66K photos
579 videos
536 files
16.2K links
Here you can find all about GSI's, ROM's, GKI Kernel's, Tech NEWS, Updates, Root methods, Magisk Module, Overlay's, Hacker things, FLOSS, FOSS, Privacy + Secure Stuff and many more!
Download Telegram
#A15 #Official #TD #GSI #TrebleDroid

Build Date: 2024 12 18
December Security Patch

android_15.0.0_r5 ci-20241218
Supports for cover on Huawei devices
  โ€ข  Accept Mulch webview
  โ€ข Add an option to secure adb
  โ€ข Add Unihertz Jelly Max double-tap-to-wake
  โ€ข Add support for aux camera on Unihertz Jelly Max


Maintainer: TrebleDroid
Download

@treblegsis_privacysecure_chat
@treblegsis_privacysecure_channel
GitHub Copilot is now available for free
https://github.com/features/copilot

However, as expected, it has been forcefully integrated into GitHub (see Fig. 1), with no option to disable it (see Fig. 2). Whatโ€™s more concerning is that it automatically gains access to private repositories without explicit user consent. While others cannot access these repositories, itโ€™s frustrating that GitHub assumes the right to access them without user approval.
https://github.com/orgs/community/discussions/139872#discussioncomment-11610121
Forwarded from The Hacker News
โš ๏ธ Ukraineโ€™s CERT-UA uncovers a malware attack targeting military personnel.

Disguised as the Army+ app, this sophisticated attack:

ยป Exploits Cloudflare Workers and Pages to host fake login pages.
ยป Tricks users into giving up credentials.
ยป Installs OpenSSH and steals cryptographic keys via the TOR network.

๐Ÿ’ก Even legitimate services are becoming a haven for cybercriminals, raising red flags for CISOs and CTOs.

๐Ÿ”— Read the full analysis here: https://thehackernews.com/2024/12/uac-0125-abuses-cloudflare-workers-to.html
Forwarded from The Hacker News
Netflix has been fined โ‚ฌ4.75M for violating GDPR by failing to explain how it used customer data like email addresses and payment details between 2018โ€“2020.

Read more: https://thehackernews.com/2024/12/dutch-dpa-fines-netflix-475-million-for.html
Forwarded from The Hacker News
๐Ÿ”ฅ Critical Alert: CISAโ€™s new directive, BOD 25-01, sets a new benchmark in cloud security for federal agencies.

Why? Misconfigurations and weak controls are opening doors to attackers.

Key Deadlines:
ยป By Feb 2025: Identify all cloud tenants
ยป By Apr 2025: Deploy SCuBA assessment tools
ยป By Jun 2025: Implement mandatory policies

๐Ÿ”— Learn how to protect your communications effectively: https://thehackernews.com/2024/12/cisa-mandates-cloud-security-for.html

๐Ÿ›ก๏ธ Regularly update security configurations to reduce your attack surface.
Forwarded from The Hacker News
๐Ÿ›‘ Fortinet's Wireless LAN Manager (FortiWLM) is vulnerable to a path traversal flaw (CVE-2023-34990) with a 9.6/10 CVSS score.

Why itโ€™s urgent: It allows attackers to...
1๏ธโƒฃ Access admin accounts using static session IDs.
2๏ธโƒฃ Execute unauthorized commands by chaining vulnerabilities.
3๏ธโƒฃ Gain root access to your network in minutes.

๐Ÿ› ๏ธ Patch now:
Affected versions: 8.5.0 to 8.6.5.
Fixed in 8.6.6โ€”update immediately.

Read: https://thehackernews.com/2024/12/fortinet-warns-of-critical-fortiwlm.html
Forwarded from The Hacker News
๐Ÿšจ What if your device unknowingly became a tool for cybercrime? Itโ€™s happening now.

Mirai malware strikes Juniper SSR devices, leveraging default passwords to turn them into DDoS attack machines. Over 90% of breached systems had unaltered factory settings.

๐Ÿ”‘ Donโ€™t leave the door open. Secure your systems today.

Read the full report: https://thehackernews.com/2024/12/juniper-warns-of-mirai-botnet-targeting.html
Forwarded from The Hacker News
Threat actors are tricking developers with fake npm packages like typescript-eslint lookalikes, amassing thousands of downloads.

Compromised tools = compromised enterprises. One wrong download could breach your entire development cycle.

๐Ÿ”’ Your move:
โœ… Review your dependencies.
โœ… Learn how these attacks work.
โœ… Build a resilient security strategy.

๐Ÿ‘‰ Read here: https://thehackernews.com/2024/12/thousands-download-malicious-npm.html
TLPUI

The Python scripts in this project generate a GTK-UI to change TLP configuration files easily. It has the aim to protect users from setting bad configuration and to deliver a basic overview of all the valid configuration values.

๐Ÿ”— Links:
- Installation
- Screenshots
- Source code
Developer: d4nj1

๐Ÿท๏ธ Tags: #Linux #Optimization