No deleted account found from
55 scanned users from this group 🚫👻Forwarded from Bones' Tech Garage
The reason we don't really post many of the security vulnerabilities is because they aren't all something to be worried about with fear. The line here has often been what a researcher has found, vs what is loose in the field. Unless it is zero day and being actively exploited usually it will be patched by the time the article is posted. On Linux by the time the article is circulated the repos already have a patch. Reading security news for the uninitiated can have the sky is falling feel, and often that is unwarranted.
Your best defense is always using best practices. The internet is a jungle and always has been. The best thing you can do is remain calm and take the right action.
https://www.bleepingcomputer.com/news/security/not-every-cve-deserves-a-fire-drill-focus-on-whats-exploitable/
Your best defense is always using best practices. The internet is a jungle and always has been. The best thing you can do is remain calm and take the right action.
https://www.bleepingcomputer.com/news/security/not-every-cve-deserves-a-fire-drill-focus-on-whats-exploitable/
BleepingComputer
Not Every CVE Deserves a Fire Drill: Focus on What’s Exploitable
Not every "critical" vulnerability is a critical risk. Picus Exposure Validation cuts through the noise by testing what's actually exploitable in your environment — so you can patch what matters.
Forwarded from The Hacker News
🚨 0-day Alert: Unpatched flaw threatens 100K+ WordPress sites
A critical vulnerability (CVE-2025-47577, CVSS 10.0) in TI WooCommerce Wishlist lets unauthenticated attackers upload malicious files.
🔗 Full details → https://thehackernews.com/2025/05/over-100000-wordpress-sites-at-risk.html
A critical vulnerability (CVE-2025-47577, CVSS 10.0) in TI WooCommerce Wishlist lets unauthenticated attackers upload malicious files.
🔗 Full details → https://thehackernews.com/2025/05/over-100000-wordpress-sites-at-risk.html
Forwarded from The Hacker News
🚨 Google Calendar… as malware C2? You read that right.
Chinese APT41 hackers hijacked a govt site to launch a stealth campaign using malware dubbed TOUGHPROGRESS—leveraging Google Calendar events to send commands & exfiltrate data.
Find details here — https://thehackernews.com/2025/05/chinese-apt41-exploits-google-calendar.html
Chinese APT41 hackers hijacked a govt site to launch a stealth campaign using malware dubbed TOUGHPROGRESS—leveraging Google Calendar events to send commands & exfiltrate data.
Find details here — https://thehackernews.com/2025/05/chinese-apt41-exploits-google-calendar.html
Forwarded from The Hacker News
🎭 Phishing scams are down 20%—but don’t celebrate yet.
Hackers are now using GenAI to launch hyper-targeted attacks on HR and finance teams. The game changed. Are your defenses ready for what’s coming next?
🛡️ Read the full 2025 report: https://thehackernews.com/expert-insights/2025/05/zscaler-threatlabz-2025-phishing-report.html
Hackers are now using GenAI to launch hyper-targeted attacks on HR and finance teams. The game changed. Are your defenses ready for what’s coming next?
🛡️ Read the full 2025 report: https://thehackernews.com/expert-insights/2025/05/zscaler-threatlabz-2025-phishing-report.html
Forwarded from It's FOSS
CoMaps is an Organic Maps fork that aims to do things differently. 🗺
https://news.itsfoss.com/organic-maps-fork-comaps/
https://news.itsfoss.com/organic-maps-fork-comaps/
It's FOSS
Organic Maps Forked Over Governance Concerns: CoMaps is Born
An Organic Maps fork has emerged due to broken trust.
Forwarded from The Hacker News
🚨 UPDATE: 9,000 ASUS routers hijacked in silent global attack. Hackers gained persistent access using a known flaw—no malware, no alerts.
Linked to the same group behind the Cisco honeypot botnet.
The real plan? It’s just starting... 👀
Read: https://thehackernews.com/2025/05/vicioustrap-uses-cisco-flaw-to-build.html
Linked to the same group behind the Cisco honeypot botnet.
The real plan? It’s just starting... 👀
Read: https://thehackernews.com/2025/05/vicioustrap-uses-cisco-flaw-to-build.html
Forwarded from The Hacker News
🚨 Hackers hijacked a trusted IT tool to launch ransomware attacks across multiple companies in a supply chain breach.
👀 The twist? Another cyber gang may have quietly opened the door. The ransomware underworld is shifting.
Learn more: https://thehackernews.com/2025/05/dragonforce-exploits-simplehelp-flaws.html
👀 The twist? Another cyber gang may have quietly opened the door. The ransomware underworld is shifting.
Learn more: https://thehackernews.com/2025/05/dragonforce-exploits-simplehelp-flaws.html
Forwarded from Hacker News
ScienceDaily
High-quality OLED displays now enabling integrated thin and multichannel audio
A research team has developed the world's first Pixel-Based Local Sound OLED technology. This breakthrough enables each pixel of an OLED display to simultaneously emit different sounds, essentially allowing the display to function as a multichannel speaker…
[BREAKING] The Trinity Has Formed.
Xiaomi, Apple, and Oppo have announced the HyperOS x iOS x ColorOS Unification Protocol™, merging their operating systems into one reality-defying firmware singularity. No more Android. No more iOS. Only OmniOS™.
Key Features Include:
– Control Center that opens sideways, vertically, and in Latin
– Settings app powered by ChatGPT but gaslit by Siri
– Notification shade responds only to quantum swipes
– Every gesture launches three apps simultaneously across brands
– Exclusive access to the Tim Cook Bootloader Zone™
– HyperColorDynamic Island™ now floats freely across screens like a wandering spirit
Security handled by MIUI Firewall 7, Face ID, and ColorOS App Permissions, which cancel each other out and leave your data in the hands of GripNet.
You’re not on Android.
You’re not on iOS.
You’re on firmware forged by fire, betrayal, and packet desync.
Welcome to OmniOS.
One tap, three crashes.
Xiaomi, Apple, and Oppo have announced the HyperOS x iOS x ColorOS Unification Protocol™, merging their operating systems into one reality-defying firmware singularity. No more Android. No more iOS. Only OmniOS™.
Key Features Include:
– Control Center that opens sideways, vertically, and in Latin
– Settings app powered by ChatGPT but gaslit by Siri
– Notification shade responds only to quantum swipes
– Every gesture launches three apps simultaneously across brands
– Exclusive access to the Tim Cook Bootloader Zone™
– HyperColorDynamic Island™ now floats freely across screens like a wandering spirit
Security handled by MIUI Firewall 7, Face ID, and ColorOS App Permissions, which cancel each other out and leave your data in the hands of GripNet.
You’re not on Android.
You’re not on iOS.
You’re on firmware forged by fire, betrayal, and packet desync.
Welcome to OmniOS.
One tap, three crashes.
Forwarded from Winaero
Users have discovered that the Windows 11 Start Menu is built with React Native and can spike CPU usage up to 70% on a single core when opened. The issue occurs inconsistently, affecting some users in about 50% of clicks.
The component is built using React Native — a framework known for its cross-platform flexibility but criticized for inefficiency in system-level applications.
This revelation has reignited discussions around software optimization and resource management in modern operating systems. Notably, legendary game developer John Carmack recently weighed in on a related topic during a discussion dubbed the "CPU Apocalypse" thought experiment.
Carmack, former CTO of Oculus and co-founder of id Software, argued that software inefficiencies - not hardware limits - are the real bottleneck in computing today. He suggested that if the development of new processors were to stall, market forces would push for significantly more optimized software, enabling older hardware to perform far better than currently expected.
The component is built using React Native — a framework known for its cross-platform flexibility but criticized for inefficiency in system-level applications.
This revelation has reignited discussions around software optimization and resource management in modern operating systems. Notably, legendary game developer John Carmack recently weighed in on a related topic during a discussion dubbed the "CPU Apocalypse" thought experiment.
Carmack, former CTO of Oculus and co-founder of id Software, argued that software inefficiencies - not hardware limits - are the real bottleneck in computing today. He suggested that if the development of new processors were to stall, market forces would push for significantly more optimized software, enabling older hardware to perform far better than currently expected.
Winaero
Windows 11 Start Menu Revealed as Resource-Heavy React Native App, Sparks Performance Concerns
Recent observations from users on the social platform X have uncovered performance issues tied to the Windows 11 Start Menu, revealing that the component
#A15 #Unofficial #TD #GSI #VoltageOS #AOSP
Build Date: 2025 05 27
May Security Patch
VoltageOS 4.3-20250527.140318
Changelog
Note
Maintainer: Chrisaw
Download
@TrebleGsis_PrivacySecure_Chat
@TrebleGsis_PrivacySecure_Channel
Build Date: 2025 05 27
May Security Patch
VoltageOS 4.3-20250527.140318
Changelog
- This is another test build to help some poor folks with bootlooping devices.
Note
You CAN flash this one if you like but it's not considered a stable release so please don't report problems if your device was previously working - some patches here will likely be removed after the test if they're not needed.Changes
Re-add "Remove selinux context for motorola health service" patch
Add a couple of patches from TrebleDroid pending PR list
Allow DOZE_SUSPEND display mode to be disabled entirely which fixes AoD on my device and possibly others
Add overlay for Ulefone 28 Ultra
Fix TrebleApp invert colours in dark mode (thanks mytja)
Add "rounded corners" patch (thanks mytja)
Re-add "mCallingSid to getpidcon" patch (temporary - seeing if this helps with some folks bootlooping on old devices)
Maintainer: Chrisaw
Download
@TrebleGsis_PrivacySecure_Chat
@TrebleGsis_PrivacySecure_Channel
Forwarded from The Hacker News
🧬 New Malware Alert: Hides Using Broken File Headers!
Fortinet just uncovered a remote access trojan (RAT) that ran unnoticed for weeks—using corrupted DOS & PE headers to avoid detection.
🖥️ Turns your PC into a remote access hub
🔁 Supports multiple attacker sessions
🔐 Uses TLS to stay stealthy
🔗 Read the full story: https://thehackernews.com/2025/05/new-windows-rat-evades-detection-for.html
Fortinet just uncovered a remote access trojan (RAT) that ran unnoticed for weeks—using corrupted DOS & PE headers to avoid detection.
🖥️ Turns your PC into a remote access hub
🔁 Supports multiple attacker sessions
🔐 Uses TLS to stay stealthy
🔗 Read the full story: https://thehackernews.com/2025/05/new-windows-rat-evades-detection-for.html
Forwarded from It's FOSS
KDE's virtual machine manager is shaping up nicely.
https://news.itsfoss.com/kde-karton-gsoc-project/
https://news.itsfoss.com/kde-karton-gsoc-project/
It's FOSS
KDE’s GNOME BOXES Counterpart is in Active Development
A new virtual machine manager is taking shape for KDE thanks to GSoC.