Privacy + Secure Tech Corner Channel πŸ›‘οΈ
90 subscribers
6.66K photos
579 videos
536 files
16.2K links
Here you can find all about GSI's, ROM's, GKI Kernel's, Tech NEWS, Updates, Root methods, Magisk Module, Overlay's, Hacker things, FLOSS, FOSS, Privacy + Secure Stuff and many more!
Download Telegram
Forwarded from The Hacker News
🚨 PhantomRaven hit the npm registry β€” 126 malicious packages, 86K+ installs, stealing npm tokens, GitHub creds, and CI/CD secrets.

They hide malware in remote dynamic dependencies that show 0 deps, so scanners miss them.

Details β†’ https://thehackernews.com/2025/10/phantomraven-malware-found-in-126-npm.html
Forwarded from The Hacker News
⚑ Cybercrime just got quieter, cheaper, and a lot more precise.

πŸ’₯ DNS flaws exploited
πŸ’₯ Rust binaries hiding payloads
πŸ’₯ Supply-chain heists rising
πŸ’₯ New RATs everywhere

Your weekly ThreatsDay recap has it all β†’ https://thehackernews.com/2025/10/threatsday-bulletin-dns-poisoning-flaw.html
Forwarded from Libreware
How to run #ADB and #fastboot in #Termux without root to unlock #bootloader, run ADB commands, remove #bloatware, flash ROM, or even root another #Android

https://www.mobile-hacker.com/2025/06/16/how-to-run-adb-and-fastboot-on-a-non-rooted-android-smartphone-using-termux/:

1. It supports debloating of various manufacturers and mobile carriers such as LG, Samsung, Xiaomi, Huawei, Oppo, Realme, Vivo, ZTE, OnePlus, Nokia, Sony, Asus, Google, Fairphone, Motorola, Tecno, Unihertz.
2. Full access to the app’s private storage β€” including databases, tokens, cached credentials, config files, or even offline user data.
3. Another common issue in AndroidManifest.xml is this flag: When enabled (which it is by default unless explicitly disabled), Android allows the app’s private data to be backed up via ADB β€” again, even on non-rooted devices.

Android
https://github.com/nohajc/termux-adb

Android debloater for pc and debloat lists
https://github.com/Universal-Debloater-Alliance/universal-android-debloater-next-generation

#debloat
Forwarded from Libreware
Universal Android Debloater Next Generation

https://github.com/Universal-Debloater-Alliance/universal-android-debloater-next-generation

This is a detached fork of the UAD project, which aims to improve privacy and battery performance by removing unnecessary and obscure system apps. This can also contribute to improving security by reducing (but not eliminating) the attack surface. Read the wiki for more details on getting started. Whilst UAD-ng can remove system apps, it cannot detect or remove potentially malicious system services or drivers baked into the firmware of your device by various vendors; some vendor-specific apps are only UI front-ends to vendor-provided system services, and as such disabling/uninstalling those apps will not stop a service from running. Additional information can be found in package descriptions inside the Universal Android Debloater Next Generation application.

#Android #debloat #UADNG
[beginners] Deep dive into Android Pentesting
Covered everything from static & dynamic analysis, Frida, Drozer, SSL pinning bypass, deep links, broadcast receivers, and more
If you're into mobile security, this one's packed with real-world scenarios & tools
https://coal-memory-97b.notion.site/Android-Pentest-1f6923af30cc80bdafa4f3c581f4c5f8
Works fine πŸ˜‰

5.15.195-android13-lts-Normal-AnyKernel3

Wild_KSU_v0.0.179-spoofed_13974-release
Forwarded from The Hacker News
🚨 A single line of JavaScript can crash any Chromium browser.

Researcher Jose Pino calls it Brash β€” it abuses how document.title handles rapid updates.

24 million title changes per second = instant crash.

Still unpatched. Details ↓ https://thehackernews.com/2025/10/new-brash-exploit-crashes-chromium.html