Privacy + Secure Tech Corner Channel 🛡️
92 subscribers
6.73K photos
589 videos
567 files
16.4K links
Here you can find all about GSI's, ROM's, GKI Kernel's, Tech NEWS, Updates, Root methods, Magisk Module, Overlay's, Hacker things, FLOSS, FOSS, Privacy + Secure Stuff and many more!
Download Telegram
Forwarded from The Hacker News
China-linked Evasive Panda ran a targeted DNS poisoning campaign to silently push spyware through fake software updates, Kaspersky reports.

🔗 Learn how poisoned DNS enabled stealth espionage → https://thehackernews.com/2025/12/china-linked-evasive-panda-ran-dns.html
This media is not supported in your browser
VIEW IN TELEGRAM
This media is not supported in your browser
VIEW IN TELEGRAM
This media is not supported in your browser
VIEW IN TELEGRAM
This media is not supported in your browser
VIEW IN TELEGRAM
This media is not supported in your browser
VIEW IN TELEGRAM
This media is not supported in your browser
VIEW IN TELEGRAM
Forwarded from The Hacker News
🛑 Trust Wallet confirmed a security breach in its Chrome extension.

Malicious code was inserted into version 2.68, stealing wallet recovery phrases and draining about $7 million.

Users must update to v2.69.

🔗 Read details here → https://thehackernews.com/2025/12/trust-wallet-chrome-extension-bug.html
This media is not supported in your browser
VIEW IN TELEGRAM
Forwarded from The Hacker News
⚠️ MongoDB fixed a server flaw that lets unauthenticated users read uninitialized heap memory.

The bug, CVE-2025-14847 (8.7), affects releases from 3.6 through 8.2 and is tied to zlib compression handling.

Patches are available now.

🔗 Read → https://thehackernews.com/2025/12/new-mongodb-flaw-lets-unauthenticated.html
This media is not supported in your browser
VIEW IN TELEGRAM
Forwarded from The Hacker News
MongoDB servers are under active exploitation via CVE-2025-14847, a pre-auth memory leak.

Censys found 87,000 exposed instances. The default zlib compression flaw can leak passwords and API keys over time.

🔗 Read → https://thehackernews.com/2025/12/mongodb-vulnerability-cve-2025-14847.html
This media is not supported in your browser
VIEW IN TELEGRAM
Forwarded from The Hacker News
⚠️ Attackers turned npm into phishing infrastructure over five months.

27 npm packages were used as CDN-hosted lures mimicking document sharing and Microsoft sign-in pages, targeting sales staff at 25 industrial and healthcare firms.

🔗 Read → https://thehackernews.com/2025/12/27-malicious-npm-packages-used-as.html
This media is not supported in your browser
VIEW IN TELEGRAM
Forwarded from The Hacker News
Cyber attacks did not slow down at the end of 2025.

⚠️ Bugs were used fast
🔓 Trusted software was misused
💸 Old breaches caused new losses
📱 Cloud, crypto, mobile, insiders all showed up

This weekly recap breaks down what mattered in the final week of 2025 and what carries into 2026.

Read: https://thehackernews.com/2025/12/weekly-recap-mongodb-attacks-wallet.html