This media is not supported in your browser
VIEW IN TELEGRAM
Forwarded from Bones' Tech Garage
System76 continues to improve COSMIC. For those of us who could see the underlying issues clearly, System76 is aware of them and continuing to improve. While for the regular user I would recommend waiting just a bit longer until the next big release. It should shape up pretty well.
https://www.howtogeek.com/system76s-cosmic-desktop-103-released/
https://www.howtogeek.com/system76s-cosmic-desktop-103-released/
How-To Geek
System76's COSMIC desktop environment just fixed a bunch of problems
The file browser, terminal, and settings options are all getting improvements with version 1.0.3.
This media is not supported in your browser
VIEW IN TELEGRAM
Forwarded from Bones' Tech Garage
The old reliable distros of beginners. Nothing fancy, or complicated just simple.
https://linuxiac.com/linux-distros-i-recommend-for-those-switching-from-windows/
https://linuxiac.com/linux-distros-i-recommend-for-those-switching-from-windows/
Linuxiac
Linux Distros I Recommend for Those Switching from Windows
Considering Linux for the first time? These four distributions are well-suited for newcomers seeking a simple, proven, and reliable starting point.
This media is not supported in your browser
VIEW IN TELEGRAM
This media is not supported in your browser
VIEW IN TELEGRAM
Forwarded from Wild KSU Ci Builds
Wild_KSU_v3.0.0-7-gdd08ee88_33158-release.apk
10.2 MB
Normal: Wild_KSU_v3.0.0-7-gdd08ee88_33158-release.apk
Repository: WildKernels/Wild_KSU
Branch: beta
Commit: dd08ee8
Workflow: View Run
Commit Message:
Repository: WildKernels/Wild_KSU
Branch: beta
Commit: dd08ee8
Workflow: View Run
Commit Message:
ci: update telegram notification config
Wild_KSU_Spoofed-v3.0.0-7-gdd08ee88_33158-release.apk
10.2 MB
Spoofed: Wild_KSU_Spoofed-v3.0.0-7-gdd08ee88_33158-release.apk
Repository: WildKernels/Wild_KSU
Branch: beta
Commit: dd08ee8
Workflow: View Run
Commit Message:
Repository: WildKernels/Wild_KSU
Branch: beta
Commit: dd08ee8
Workflow: View Run
Commit Message:
ci: update telegram notification config
This media is not supported in your browser
VIEW IN TELEGRAM
This media is not supported in your browser
VIEW IN TELEGRAM
Forwarded from 小页页的胡言乱语 (canyie)
PoC 代码:https://github.com/canyie/CVE-2024-23700
下载编译好的 apk:https://github.com/canyie/CVE-2024-23700/releases
和视频里的版本相比优化了几个细节:
视频里尝试提升权限时会有一闪而过的白屏,比较容易被注意到,进行了优化,让利用更隐蔽
支持了静默自动获取录音权限,需要 Android 14+
添加了一个拨号按钮,提权之后可以无用户交互拨打电话,确保提到的权限真的能用
提供的测试 app 在绝大部分设备上都无法安装。如果在你的设备上安装失败,是正常的,说明它目前不受影响(但是你后面又刷了其他 ROM 或者开了什么模块就不一定了)。
下载编译好的 apk:https://github.com/canyie/CVE-2024-23700/releases
和视频里的版本相比优化了几个细节:
视频里尝试提升权限时会有一闪而过的白屏,比较容易被注意到,进行了优化,让利用更隐蔽
支持了静默自动获取录音权限,需要 Android 14+
添加了一个拨号按钮,提权之后可以无用户交互拨打电话,确保提到的权限真的能用
提供的测试 app 在绝大部分设备上都无法安装。如果在你的设备上安装失败,是正常的,说明它目前不受影响(但是你后面又刷了其他 ROM 或者开了什么模块就不一定了)。
GitHub
GitHub - canyie/CVE-2024-23700: PoC for CVE-2024-23700, Android slient privilege escalation allow to read/write contacts, SMS,…
PoC for CVE-2024-23700, Android slient privilege escalation allow to read/write contacts, SMS, calendar, call log and voicemail, make outgoing calls or answer incoming calls, manipulate call settin...
This media is not supported in your browser
VIEW IN TELEGRAM
Forwarded from 小页页的胡言乱语 (canyie)
Media is too big
VIEW IN TELEGRAM
效果,无用户交互自动授权读写联系人、短信、日程、通话记录和语音信箱,拨打电话或接听来电,操纵通话设置,发送通知,读取并操作其他应用发送的通知,控制附近设备,录制声音,读取设备唯一标识符,和绕过后台执行限制。
漏洞评级(Severity):Critical 最高/严重
漏洞评级(Severity):Critical 最高/严重
This media is not supported in your browser
VIEW IN TELEGRAM