Forwarded from UNDERCODE NEWS (Copyright & Fact Checker)
💳 Washington Pastor Indicted in Multi-Million Dollar Cryptocurrency Scam
https://undercodenews.com/washington-pastor-indicted-in-multi-million-dollar-cryptocurrency-scam/
@Undercode_News
https://undercodenews.com/washington-pastor-indicted-in-multi-million-dollar-cryptocurrency-scam/
@Undercode_News
UNDERCODE NEWS
Washington Pastor Indicted in Multi-Million Dollar Cryptocurrency Scam - UNDERCODE NEWS
Undercode News was founded in order to provide the most useful information in the world of hacking and technology. Staffed 24/24 hours, seven days a week by a dedicated team in undercode around the world, so it can provide an environment of information and…
Forwarded from UNDERCODE NEWS (Copyright & Fact Checker)
Mastering Tensor Dimensions in Transformers: A Deep Dive into Generative #AI Models
https://undercodenews.com/mastering-tensor-dimensions-in-transformers-a-deep-dive-into-generative-ai-models/
@Undercode_News
https://undercodenews.com/mastering-tensor-dimensions-in-transformers-a-deep-dive-into-generative-ai-models/
@Undercode_News
UNDERCODE NEWS
Mastering Tensor Dimensions in Transformers: A Deep Dive into Generative AI Models - UNDERCODE NEWS
Undercode News was founded in order to provide the most useful information in the world of hacking and technology. Staffed 24/24 hours, seven days a week by a dedicated team in undercode around the world, so it can provide an environment of information and…
Forwarded from UNDERCODE NEWS (Copyright & Fact Checker)
How Local SIM Card Manufacturing is Boosting Nigeria’s Economy: A N55 Billion Success Story
https://undercodenews.com/how-local-sim-card-manufacturing-is-boosting-nigerias-economy-a-n55-billion-success-story/
@Undercode_News
https://undercodenews.com/how-local-sim-card-manufacturing-is-boosting-nigerias-economy-a-n55-billion-success-story/
@Undercode_News
UNDERCODE NEWS
How Local SIM Card Manufacturing is Boosting Nigeria’s Economy: A N55 Billion Success Story - UNDERCODE NEWS
Undercode News was founded in order to provide the most useful information in the world of hacking and technology. Staffed 24/24 hours, seven days a week by a dedicated team in undercode around the world, so it can provide an environment of information and…
Forwarded from UNDERCODE NEWS (Copyright & Fact Checker)
📱 #Apple’s Next-Gen Entry-Level iPad: A17 Pro Chip and #Apple Intelligence Take Center Stage
https://undercodenews.com/apples-next-gen-entry-level-ipad-a17-pro-chip-and-apple-intelligence-take-center-stage/
@Undercode_News
https://undercodenews.com/apples-next-gen-entry-level-ipad-a17-pro-chip-and-apple-intelligence-take-center-stage/
@Undercode_News
UNDERCODE NEWS
Apple’s Next-Gen Entry-Level iPad: A17 Pro Chip and Apple Intelligence Take Center Stage - UNDERCODE NEWS
Undercode News was founded in order to provide the most useful information in the world of hacking and technology. Staffed 24/24 hours, seven days a week by a dedicated team in undercode around the world, so it can provide an environment of information and…
Forwarded from UNDERCODE NEWS (Copyright & Fact Checker)
⚡️ #Apple Arcade Expands with 10 New Games, Including PGA TOUR Pro Golf and Exciting Updates
https://undercodenews.com/apple-arcade-expands-with-10-new-games-including-pga-tour-pro-golf-and-exciting-updates/
@Undercode_News
https://undercodenews.com/apple-arcade-expands-with-10-new-games-including-pga-tour-pro-golf-and-exciting-updates/
@Undercode_News
UNDERCODE NEWS
Apple Arcade Expands with 10 New Games, Including PGA TOUR Pro Golf and Exciting Updates - UNDERCODE NEWS
Undercode News was founded in order to provide the most useful information in the world of hacking and technology. Staffed 24/24 hours, seven days a week by a dedicated team in undercode around the world, so it can provide an environment of information and…
Forwarded from UNDERCODE NEWS (Copyright & Fact Checker)
🎮 Relive Your Childhood with the Gamebaby: A Retro #Gaming Case for Your #iPhone
https://undercodenews.com/relive-your-childhood-with-the-gamebaby-a-retro-gaming-case-for-your-iphone/
@Undercode_News
https://undercodenews.com/relive-your-childhood-with-the-gamebaby-a-retro-gaming-case-for-your-iphone/
@Undercode_News
UNDERCODE NEWS
Relive Your Childhood with the Gamebaby: A Retro Gaming Case for Your iPhone - UNDERCODE NEWS
Undercode News was founded in order to provide the most useful information in the world of hacking and technology. Staffed 24/24 hours, seven days a week by a dedicated team in undercode around the world, so it can provide an environment of information and…
Forwarded from UNDERCODE NEWS (Copyright & Fact Checker)
PhonePe Launches Affordable Travel Insurance for Maha Kumbh Mela 2025
https://undercodenews.com/phonepe-launches-affordable-travel-insurance-for-maha-kumbh-mela-2025/
@Undercode_News
https://undercodenews.com/phonepe-launches-affordable-travel-insurance-for-maha-kumbh-mela-2025/
@Undercode_News
UNDERCODE NEWS
PhonePe Launches Affordable Travel Insurance for Maha Kumbh Mela 2025 - UNDERCODE NEWS
Undercode News was founded in order to provide the most useful information in the world of hacking and technology. Staffed 24/24 hours, seven days a week by a dedicated team in undercode around the world, so it can provide an environment of information and…
Forwarded from UNDERCODE NEWS (Copyright & Fact Checker)
The Great Hanshin Earthquake: A 10 Trillion Yen City Rebuild and the Ongoing Quest for Disaster Resilience
https://undercodenews.com/the-great-hanshin-earthquake-a-10-trillion-yen-city-rebuild-and-the-ongoing-quest-for-disaster-resilience/
@Undercode_News
https://undercodenews.com/the-great-hanshin-earthquake-a-10-trillion-yen-city-rebuild-and-the-ongoing-quest-for-disaster-resilience/
@Undercode_News
UNDERCODE NEWS
The Great Hanshin Earthquake: A 10 Trillion Yen City Rebuild and the Ongoing Quest for Disaster Resilience - UNDERCODE NEWS
Undercode News was founded in order to provide the most useful information in the world of hacking and technology. Staffed 24/24 hours, seven days a week by a dedicated team in undercode around the world, so it can provide an environment of information and…
Forwarded from UNDERCODE NEWS (Copyright & Fact Checker)
📱 #Apple’s Big Week: M4 Macs, #macOS Sequoia, and More Unveiled
https://undercodenews.com/apples-big-week-m4-macs-macos-sequoia-and-more-unveiled/
@Undercode_News
https://undercodenews.com/apples-big-week-m4-macs-macos-sequoia-and-more-unveiled/
@Undercode_News
UNDERCODE NEWS
Apple’s Big Week: M4 Macs, macOS Sequoia, and More Unveiled - UNDERCODE NEWS
Undercode News was founded in order to provide the most useful information in the world of hacking and technology. Staffed 24/24 hours, seven days a week by a dedicated team in undercode around the world, so it can provide an environment of information and…
Forwarded from UNDERCODE NEWS (Copyright & Fact Checker)
🛡️ Italy Explores Collaboration with #SpaceX for Telecom Security: A National Interest Priority
https://undercodenews.com/italy-explores-collaboration-with-spacex-for-telecom-security-a-national-interest-priority/
@Undercode_News
https://undercodenews.com/italy-explores-collaboration-with-spacex-for-telecom-security-a-national-interest-priority/
@Undercode_News
UNDERCODE NEWS
Italy Explores Collaboration with SpaceX for Telecom Security: A National Interest Priority - UNDERCODE NEWS
Undercode News was founded in order to provide the most useful information in the world of hacking and technology. Staffed 24/24 hours, seven days a week by a dedicated team in undercode around the world, so it can provide an environment of information and…
Forwarded from UNDERCODE NEWS (Copyright & Fact Checker)
🚨 Weekly SecurityAffairs Newsletter: A Deep Dive into Global Cybersecurity Threats
https://undercodenews.com/weekly-securityaffairs-newsletter-a-deep-dive-into-global-cybersecurity-threats/
@Undercode_News
https://undercodenews.com/weekly-securityaffairs-newsletter-a-deep-dive-into-global-cybersecurity-threats/
@Undercode_News
UNDERCODE NEWS
Weekly SecurityAffairs Newsletter: A Deep Dive into Global Cybersecurity Threats - UNDERCODE NEWS
Weekly SecurityAffairs Newsletter: A Deep Dive into Global Cybersecurity Threats "Undercode News – The #1 source for cybersecurity & tech news. Powered by AI fact-checking & copyright protection. Stay informed with real insights!"
Forwarded from UNDERCODE NEWS (Copyright & Fact Checker)
The Outdated Hiring Bias: How Hobbies Are Misjudged in the Workplace
https://undercodenews.com/the-outdated-hiring-bias-how-hobbies-are-misjudged-in-the-workplace/
@Undercode_News
https://undercodenews.com/the-outdated-hiring-bias-how-hobbies-are-misjudged-in-the-workplace/
@Undercode_News
UNDERCODE NEWS
The Outdated Hiring Bias: How Hobbies Are Misjudged in the Workplace - UNDERCODE NEWS
The Outdated Hiring Bias: How Hobbies Are Misjudged in the Workplace "Undercode News – The #1 source for cybersecurity & tech news. Powered by AI fact-checking & copyright protection. Stay informed with real insights!"
Forwarded from UNDERCODE NEWS (Copyright & Fact Checker)
Meta’s Policy Overhaul: A Shift in Diversity, Content Moderation, and Workplace Culture
https://undercodenews.com/metas-policy-overhaul-a-shift-in-diversity-content-moderation-and-workplace-culture/
@Undercode_News
https://undercodenews.com/metas-policy-overhaul-a-shift-in-diversity-content-moderation-and-workplace-culture/
@Undercode_News
UNDERCODE NEWS
Meta’s Policy Overhaul: A Shift in Diversity, Content Moderation, and Workplace Culture - UNDERCODE NEWS
Meta’s Policy Overhaul: A Shift in Diversity, Content Moderation, and Workplace Culture "Undercode News – The #1 source for cybersecurity & tech news. Powered by AI fact-checking & copyright protection. Stay informed with real insights!"
Forwarded from UNDERCODE NEWS (Copyright & Fact Checker)
🛡️ Beware: Cybercriminals Are Bypassing #Apple iMessage’s Phishing Protections
https://undercodenews.com/beware-cybercriminals-are-bypassing-apple-imessages-phishing-protections/
@Undercode_News
https://undercodenews.com/beware-cybercriminals-are-bypassing-apple-imessages-phishing-protections/
@Undercode_News
Forwarded from UNDERCODE TESTING
🦑Critical Security Bug in Meta Ecosystem – Zero-Click Account Takeover 🔒
As cybersecurity researchers, my buddy Musawer Khan and I uncovered a Zero-Click Account Takeover (ATO) vulnerability in Meta's ecosystem. This vulnerability involved chaining two endpoints—one being a password reset URL that was indexed on platforms like URLScan and Wayback Machine. These URLs should ideally expire after a reasonable timeframe, yet they remained active and exploitable.
Impact:
1. Without requiring any user interaction (zero-click), we were able to gain unauthorized access to multiple accounts by chaining an endpoint and a password reset link.
2. This demonstrates a serious flaw in how reset links are managed, as they should expire promptly to mitigate potential misuse.
Despite providing a detailed proof-of-concept (PoC) showcasing the exploit, Meta Meta Facebook security team declined to classify this as a vulnerability under their bug bounty program, stating that the URLs were publicly exposed before indexing. However, the persistence of these sensitive URLs and the ability to exploit them points to a systemic issue.
Our Responsibility:
As responsible researchers, Musawer Khan and I ensured that all live URLs were expired from our side before disclosing the findings publicly. Our goal is to raise awareness about the importance of securing password reset mechanisms and ensuring that sensitive URLs are time-bound and properly invalidated.
Key Takeaways:
Password reset URLs should automatically expire after a short duration or after first use.
Mohaseen Katika
@UndercodeCommunity
▁ ▂ ▄ U𝕟𝔻Ⓔ𝐫Ć𝔬𝓓ⓔ ▄ ▂ ▁
As cybersecurity researchers, my buddy Musawer Khan and I uncovered a Zero-Click Account Takeover (ATO) vulnerability in Meta's ecosystem. This vulnerability involved chaining two endpoints—one being a password reset URL that was indexed on platforms like URLScan and Wayback Machine. These URLs should ideally expire after a reasonable timeframe, yet they remained active and exploitable.
Impact:
1. Without requiring any user interaction (zero-click), we were able to gain unauthorized access to multiple accounts by chaining an endpoint and a password reset link.
2. This demonstrates a serious flaw in how reset links are managed, as they should expire promptly to mitigate potential misuse.
Despite providing a detailed proof-of-concept (PoC) showcasing the exploit, Meta Meta Facebook security team declined to classify this as a vulnerability under their bug bounty program, stating that the URLs were publicly exposed before indexing. However, the persistence of these sensitive URLs and the ability to exploit them points to a systemic issue.
Our Responsibility:
As responsible researchers, Musawer Khan and I ensured that all live URLs were expired from our side before disclosing the findings publicly. Our goal is to raise awareness about the importance of securing password reset mechanisms and ensuring that sensitive URLs are time-bound and properly invalidated.
Key Takeaways:
Password reset URLs should automatically expire after a short duration or after first use.
Mohaseen Katika
@UndercodeCommunity
▁ ▂ ▄ U𝕟𝔻Ⓔ𝐫Ć𝔬𝓓ⓔ ▄ ▂ ▁
Forwarded from UNDERCODE TESTING
This media is not supported in your browser
VIEW IN TELEGRAM
Security Bug in Meta Ecosystem – Zero-Click Account Takeover
Forwarded from UNDERCODE NEWS (Copyright & Fact Checker)
🚨 the Future of Cybersecurity: Emerging Threats and Innovative Defenses
https://undercodenews.com/the-future-of-cybersecurity-emerging-threats-and-innovative-defenses/
@Undercode_News
https://undercodenews.com/the-future-of-cybersecurity-emerging-threats-and-innovative-defenses/
@Undercode_News
UNDERCODE NEWS
the Future of Cybersecurity: Emerging Threats and Innovative Defenses - UNDERCODE NEWS
Undercode News was founded in order to provide the most useful information in the world of hacking and technology. Staffed 24/24 hours, seven days a week by a dedicated team in undercode around the world, so it can provide an environment of information and…
Forwarded from UNDERCODE NEWS (Copyright & Fact Checker)
⚡️ China's Growing Footprint in Thailand: The Rise of a New Chinatown in the East
https://undercodenews.com/chinas-growing-footprint-in-thailand-the-rise-of-a-new-chinatown-in-the-east/
@Undercode_News
https://undercodenews.com/chinas-growing-footprint-in-thailand-the-rise-of-a-new-chinatown-in-the-east/
@Undercode_News
UNDERCODE NEWS
China's Growing Footprint in Thailand: The Rise of a New Chinatown in the East - UNDERCODE NEWS
Undercode News was founded in order to provide the most useful information in the world of hacking and technology. Staffed 24/24 hours, seven days a week by a dedicated team in undercode around the world, so it can provide an environment of information and…
Forwarded from UNDERCODE NEWS (Copyright & Fact Checker)
#Tesla’s Refreshed Model Y “Juniper” Spotted in California: What to Expect
https://undercodenews.com/teslas-refreshed-model-y-juniper-spotted-in-california-what-to-expect/
@Undercode_News
https://undercodenews.com/teslas-refreshed-model-y-juniper-spotted-in-california-what-to-expect/
@Undercode_News
UNDERCODE NEWS
Tesla’s Refreshed Model Y “Juniper” Spotted in California: What to Expect - UNDERCODE NEWS
Undercode News was founded in order to provide the most useful information in the world of hacking and technology. Staffed 24/24 hours, seven days a week by a dedicated team in undercode around the world, so it can provide an environment of information and…
Forwarded from UNDERCODE NEWS (Copyright & Fact Checker)
⚠️ Meta’s Shift to Crowdsourced Moderation: A Risky Gamble Against Misinformation?
https://undercodenews.com/metas-shift-to-crowdsourced-moderation-a-risky-gamble-against-misinformation/
@Undercode_News
https://undercodenews.com/metas-shift-to-crowdsourced-moderation-a-risky-gamble-against-misinformation/
@Undercode_News
UNDERCODE NEWS
Meta’s Shift to Crowdsourced Moderation: A Risky Gamble Against Misinformation? - UNDERCODE NEWS
Undercode News was founded in order to provide the most useful information in the world of hacking and technology. Staffed 24/24 hours, seven days a week by a dedicated team in undercode around the world, so it can provide an environment of information and…