Please open Telegram to view this post
VIEW IN TELEGRAM
👍2❤1🔥1
BRENE v0.0.44 @modulostk.zip
121.7 KB
Please open Telegram to view this post
VIEW IN TELEGRAM
❤9👍2🔥1
Please open Telegram to view this post
VIEW IN TELEGRAM
❤8👍3🔥1🌚1
Forwarded from MódulOS.tk • Magisk Modules (⏤͟͟͞͞𝙇𝙚͜͡𝙖𝙣 ୧⍤⃝🍛)
This isn't a leak, but...
BREAKING: Nekogram is secretly sending your phone numbers to the developer
The backdoor is hidden in the http://Extra.java
file, which differs from the template uploaded to the repository. The obfuscated code sends data as an inline request to the @nekonotificationbot, leaving no trace.
More info about the backdoor: https://github.com/Nekogram/Nekogram/issues/336 (locked by Nekogram devs)
To validate this, we made a PoC: an LSPosed module that replaces the bot ID and username to ours so all requests are going to it. That way, we confirmed that the phone numbers are being collected. Every. Login.
The PoC is available here: https://github.com/RomashkaTea/nekogram-proof-of-logging
What should you do?
1. Report the app on Play Store: https://play.google.com/store/apps/details?id=tw.nekomimi.nekogram
2. Report the repository on GitHub: https://github.com/Nekogram/Nekogram
3. Report all Nekogram channels on Telegram
4. Delete the app and stop using unofficial Telegram clients
BREAKING: Nekogram is secretly sending your phone numbers to the developer
The backdoor is hidden in the http://Extra.java
file, which differs from the template uploaded to the repository. The obfuscated code sends data as an inline request to the @nekonotificationbot, leaving no trace.
More info about the backdoor: https://github.com/Nekogram/Nekogram/issues/336 (locked by Nekogram devs)
To validate this, we made a PoC: an LSPosed module that replaces the bot ID and username to ours so all requests are going to it. That way, we confirmed that the phone numbers are being collected. Every. Login.
The PoC is available here: https://github.com/RomashkaTea/nekogram-proof-of-logging
What should you do?
1. Report the app on Play Store: https://play.google.com/store/apps/details?id=tw.nekomimi.nekogram
2. Report the repository on GitHub: https://github.com/Nekogram/Nekogram
3. Report all Nekogram channels on Telegram
4. Delete the app and stop using unofficial Telegram clients
👍13❤3🤯3🔥1
Forwarded from MódulOS.tk • Magisk Modules (⏤͟͟͞͞𝙇𝙚͜͡𝙖𝙣 ୧⍤⃝🍛)
MódulOS.tk • Magisk Modules
Photo
https://t.me/NekoUpdates/531
Here he admits what was said in the previous post.
We're supposed to believe he doesn't do anything with that data, hahaha
Don't forget to report all nekogram channels on Telegram.
Stupid people join his channel instead of reporting him.
Here he admits what was said in the previous post.
We're supposed to believe he doesn't do anything with that data, hahaha
Don't forget to report all nekogram channels on Telegram.
Stupid people join his channel instead of reporting him.
❤7👍3🔥1
Forwarded from HUBERTHUB Season 3
so basically malware has been in the Nekogram app since 2024 and no one noticed it
Doesn't matter if you remove the app now, they already have your info anyway
The most interesting part is it was first limited to China and countries with +85 numbers like... North Korea - probably they were just targeting Hong Kong but turns out there are more countries starting with that XD
Here's a research of versions + LSPosed module to hook Nekogram, it will show you a toast every time your data is being sent:
https://github.com/XHUBERTH/NekoCheck
Sent from Nekogram Android App from Google Play (Protected by Play Protect)
Doesn't matter if you remove the app now, they already have your info anyway
The most interesting part is it was first limited to China and countries with +85 numbers like... North Korea - probably they were just targeting Hong Kong but turns out there are more countries starting with that XD
Here's a research of versions + LSPosed module to hook Nekogram, it will show you a toast every time your data is being sent:
https://github.com/XHUBERTH/NekoCheck
Sent from Nekogram Android App from Google Play (Protected by Play Protect)
GitHub
GitHub - XHUBERTH/NekoCheck: Tracking of malware embedded into Nekogram
Tracking of malware embedded into Nekogram. Contribute to XHUBERTH/NekoCheck development by creating an account on GitHub.
❤16😱4🔥2👍1
Vector v2.0-3034 @modulostk.zip
8.3 MB
Please open Telegram to view this post
VIEW IN TELEGRAM
❤7🔥1
Please open Telegram to view this post
VIEW IN TELEGRAM
❤4👍1🔥1
Forwarded from ᒪᗴᗩᑎ
Hyper Island v1.9.9 @modulostk.apk
10 MB
Please open Telegram to view this post
VIEW IN TELEGRAM
❤4👍2🔥2🥰2
Please open Telegram to view this post
VIEW IN TELEGRAM
❤3👍2🔥1🥰1
Forwarded from ᒪᗴᗩᑎ
Please open Telegram to view this post
VIEW IN TELEGRAM
❤5🔥2👍1
Forwarded from ᒪᗴᗩᑎ
Please open Telegram to view this post
VIEW IN TELEGRAM
❤4👍2
Please open Telegram to view this post
VIEW IN TELEGRAM
❤7👍3🔥1🥰1
Please open Telegram to view this post
VIEW IN TELEGRAM
❤6👍2🔥1
Please open Telegram to view this post
VIEW IN TELEGRAM
❤3👍1🥰1
BRENE v0.0.47 @modulostk.zip
123.1 KB
Please open Telegram to view this post
VIEW IN TELEGRAM
❤7👍2
Forwarded from ᒪᗴᗩᑎ
RaptorMark @modulostk.apk
24 MB
Please open Telegram to view this post
VIEW IN TELEGRAM
👍2❤1🔥1
Please open Telegram to view this post
VIEW IN TELEGRAM
❤5👍2