cKure Red
2.35K subscribers
70 photos
32 videos
21 files
447 links
The director's cut on critical feeds from InfoSec world ๐ŸŒŽ

Main Channel: @cKure

โ˜•๏ธ or queries email us
๐Ÿ“จ i@ckure.org
Download Telegram
๐Ÿ“ฃ Oracle quietly confirms public cloud data breach, customer data stolen.

The attacker exploited a vulnerability in Oracle Access Manager to breach Oracle-hosted servers. The vulnerability is tracked as CVE-2021-35587 and was assigned a critical severity score 9.8/10. It was patched in mid-January 2022, raising questions over whether Oracle kept its own servers vulnerable to a flaw it fixed more than three years ago.

CrowdStrike is investigating the incident along FBI.


https://www.techradar.com/pro/security/oracle-quietly-confirms-public-cloud-data-breach-customer-data-stolen
Please open Telegram to view this post
VIEW IN TELEGRAM
๐Ÿ”ฅ31
๐Ÿ”ค SQLMap from Waybackurls.

waybackurls target | grep -E '\bhttps?://\S+?=\S+' | grep -E '\.php|\.asp' | sort -u | sed 's/\(=[^&]*\)/=/g' | tee urls.txt | sort -u -o urls.txt && cat urls.txt | xargs -I{} sqlmap --technique=T --batch -u "{}"

Credits: Zlatan H
Please open Telegram to view this post
VIEW IN TELEGRAM
3โšก1๐Ÿ”ฅ1
๐Ÿ“Everyone knows your location: Tracking myself down through in-app ads.

https://timsh.org/tracking-myself-down-through-in-app-ads/

๐Ÿ“Everyone knows your location, Part 2: Try it yourself and share the results.

https://timsh.org/everyone-knows-your-location-part-2-try-it-yourself/

โžฟโžฟโžฟโžฟโžฟโžฟโžฟโžฟโžฟโžฟ

analyse-ad-traffic l: A guide + python notebook that helps to collect, analyse and visualise requests sent by a mobile device while using some app.

https://github.com/tim-sha256/analyse-ad-traffic
Please open Telegram to view this post
VIEW IN TELEGRAM
๐Ÿ”ฅ4๐Ÿคก1
๐ŸŸฅMicrosoft Zero-Day drop:
Server MS-TNAP Authentication Bypass [RCE 0day]
A critical 0-click remote authentication bypass vulnerability in Microsoft Telnet Server that allows attackers to gain access as any user, including Administrator, without requiring valid credentials. The vulnerability exploits a misconfiguration in the NTLM Authentication processes of the Telnet MS-TNAP extension allowing remote unauthenticated attackers to bypass authentication completely.


Unconfirmed code
https://github.com/hackerhouse-opensource/hfwintelnet
Please open Telegram to view this post
VIEW IN TELEGRAM
๐Ÿ”ฅ2๐Ÿ‘1๐Ÿ‘Œ11
๐ŸŒ Pwning the Ladybird browser.

https://jessie.cafe/posts/pwning-ladybirds-libjs/
Please open Telegram to view this post
VIEW IN TELEGRAM
โœ1๐Ÿ‘11
โค๏ธ Running code on Tesla security ECU from tire: dlDetails on new CVE-2025-2082 vulnerability.

Security researchers Thomas Imbert, Vincent Dehors, and David Bรฉrard found and responsibly disclosed recently a remote code execution (RCE) vulnerability in Tesla's VCSEC ECU.

Technical overview: By manipulating the response sent from the Tire Pressure Monitoring System (TPMS), an attacker can trigger an integer overflow and execute code in the context of the VCSEC module. This gives the attacker the ability to send arbitrary messages to the vehicle's CAN bus.

More details: "0-click RCE on Tesla Model 3 through TPMS Sensors" [PDF]:
https://www.synacktiv.com/sites/default/files/2024-10/hexacon_0_click_rce_on_tesla_model_3_through_tpms_sensors_light.pdf

Advisory: https://www.zerodayinitiative.com/advisories/ZDI-25-265/

Under Pressure: Exploring a Zero-Click RCE Vulnerability in Tesla's TPMS:
https://vicone.com/blog/under-pressure-exploring-a-zero-click-rce-vulnerability-in-teslas-tpms
Please open Telegram to view this post
VIEW IN TELEGRAM
๐Ÿ‘3๐Ÿ†’11
๐Ÿ CVE-2024-44236: Remote Code Execution vulnerability in Apple macOS.

An out-of-bounds write vulnerability has been reported in macOS. The vulnerability is due to the lack of proper validation of โ€œlutAToBTypeโ€ and โ€œlutBToATypeโ€ tag types.

A remote attacker could exploit this vulnerability by enticing a victim to open a crafted file. A successful attack may result in code execution on the victim's machine in the context of the running process.


https://www.zerodayinitiative.com/blog/2025/5/7/cve-2024-44236-remote-code-execution-vulnerability-in-apple-macos
Please open Telegram to view this post
VIEW IN TELEGRAM
๐Ÿ‘1
This media is not supported in your browser
VIEW IN TELEGRAM
๐Ÿ”’Bypassing CrowdStrike Falcon using PowerShel.

Simulated scenario where a PowerShell script is used to silently bypass a CrowdStrike Falcon endpoint and establish a reverse shell all while the sensor is running
Objective: Demonstrate how threat actors may abuse trusted scripting environments and highlight the importance of layered defence and behavioural detection.

Source: Linkedin Bibek Sapkota
Please open Telegram to view this post
VIEW IN TELEGRAM
๐Ÿ‘ป5๐Ÿ‘32
cKure Red pinned ยซ๐ŸŽCVE-2025-31200: Apple iPhone RCE by opening a video file. ๐ŸŽžhttps://youtu.be/nTO3TRBW00Eยป
This media is not supported in your browser
VIEW IN TELEGRAM
๐Ÿ˜Ž๐Ÿ˜Ž๐Ÿ˜Ž Zuckerberg's contribution to genocide. The jew โœก๏ธ who hired Zionists from Mossad / Unit 8200 and likes; as employees at high positions to access WhatsApp data of users and, in one instance murdering all members of a group for the fact that one of the members was once affiliated with Hamas militant group.
Please open Telegram to view this post
VIEW IN TELEGRAM
๐Ÿคฎ5๐Ÿ‘2๐Ÿ˜จ2โคโ€๐Ÿ”ฅ1๐Ÿ”ฅ1๐Ÿ‘1๐Ÿ†’1
This media is not supported in your browser
VIEW IN TELEGRAM
๐Ÿ“ฑ Samsung shares surveillance software under the control of the Israeli firm [IronSource].

๐Ÿ“Œ A class of Samsung devices are vulnerable.

๐Ÿ“ŒLegally, Samsung can not install the third-partyware.

๐Ÿ“ŒApp cloud โ˜๏ธ can not be removed unless the device is rooted.
Please open Telegram to view this post
VIEW IN TELEGRAM
๐Ÿ‘3๐Ÿคฎ2๐Ÿคฏ1๐Ÿ˜จ1
3626205.3659144.pdf
1.4 MB
โœˆ๏ธ Silently taking over a plane using the ARINC 429 protocol: message injection, modification, and deletion on avionics data buses. Security researchers Daniel Dorigat, Martin Strohmeier, and Stephan Neuhaus shared their academic article, "Air-Bus Hijacking: Silently Taking Over Avionics Systems," on the security analysis of avionics systems in Boeing planes. The main goal was to highlight security weaknesses in avionics data protocols. The authors analyzed the protocols, carried out successful data manipulation attacks, and demonstrated how these attacks could disrupt internal plane systems and feed false information to the pilots. The attacks require physical access to the bus, and there is currently no way to carry them out from outside the planeโ€ฆ yet.
Please open Telegram to view this post
VIEW IN TELEGRAM
๐Ÿ”ฅ43
๐ŸŒBreaking TETRA: a backdoor in cryptography and other security issues in radios used by police, army, and OT worldwide.

Security researchers Jos Wetzels, Carlo Meijer, and Wouter Bokslag shared their research on TETRA technology by reverse engineering Motorola MBTS and MTM5400 radios and extracting the secrets from them.

TETRA is a radio technology patented in 1995 and based on proprietary cryptography. Equipment using this protocol was developed for law enforcement and military clients, as well as for 0T and SCADA systems used in machine-to-machine communication. So, the impact is huge.

The authors also identified traces of the first attacks on TETRA dating back to 2009. It looks like an NDA is not enough to protect against hackers.

References:
All Cops Are Broadcasting: Breaking TETRA After Decades In The Shadows.
https://youtube.com/watch

๐Ÿ“PDF:
https://orangecon.nl/legacy/2024/assets/slides/2024/OrangeCon2024%20-%20All%20Cops%20Are%20Broadcasting.pdf

White Paper ๐Ÿ“ƒ
https://www.usenix.org/system/files/usenixsecurity23-meijer.pdf
Please open Telegram to view this post
VIEW IN TELEGRAM
โค1๐Ÿค”1๐Ÿฅฑ1๐Ÿ†’11
A comprehensive review of over 50 research papers on fault injection and side-channel attacks, published between 2009 and 2021, has been compiled by a team of academic researchers. This survey analyzes existing knowledge, significant discoveries, and potential avenues for future research in this field. The accompanying bibliography includes 175 relevant sources.

๐Ÿ“"Physical Fault injection and Side-Channel Attacks on
Mobile Devices: A Comprehensive Analysis"

https://pure.royalholloway.ac.uk/ws/portalfiles/portal/43165354/Physical_Fault_Injection_and_Side_Channel_Attacks_on_Mobile_Devices.pdf
Please open Telegram to view this post
VIEW IN TELEGRAM
๐Ÿ”ฅ2๐Ÿ‘1๐Ÿ˜ฑ1
๐ŸคฉGoogle Chromeโ€™s unique handling of referrer-policy creates a major loophole for silent data siphoning.

CVE-2025-4664 proves that even trusted browsers are not immune to catastrophic zero-day vulnerabilities.

Cross-origin data is up for grabs if you haven't updated Chrome or Chromium.


https://wazuh.com/blog/detecting-chrome-cve-2025-4664-vulnerability-with-wazuh/

https://www.techradar.com/pro/security/billions-of-chrome-users-at-risk-from-new-data-stealing-browser-vulnerability-how-to-stay-safe
Please open Telegram to view this post
VIEW IN TELEGRAM
๐ŸŸฅ Facebook app and other Meta apps are malware that bypass security audits to leak user data to meta servers.

The covert method Meta uses to track mobile browsing without consent โ€” even in incognito mode or with a VPN on all androis devices.

Patch immediately: Reset the phone and make sure not to install any app by Meta.


https://english.elpais.com/technology/2025-06-03/the-covert-method-meta-uses-to-track-mobile-browsing-without-consent-even-in-incognito-mode-or-with-a-vpn.html
Please open Telegram to view this post
VIEW IN TELEGRAM
๐Ÿคฏ4โค1๐Ÿคก1
๐Ÿค– FridaScriptGen: It scans an APKโ€™s Smali code for root-detection and SSL-pinning patterns and then automatically creates Frida scripts to bypass these security checks.

https://github.com/thecybersandeep/frida-script-gen
Please open Telegram to view this post
VIEW IN TELEGRAM
๐Ÿ”ฅ3