Android Security & Malware
43.4K subscribers
127 photos
20 videos
7 files
2.7K links
Mobile cybersecurity channel
Links: https://linktr.ee/mobilehacker
Contact: [email protected]
Download Telegram
Wild vulnerabilities discovered in mobile dating app - Feeld with 1 Million installs on Google Play
-Disclosure of profile information to non-premium users
-Read other peopleโ€™s messages
-access to other peopleโ€™s photos & videos from their chats
-delete, recover and edit other peopleโ€™s messages
-Update someone elseโ€™s profile information
-Send messages in other peopleโ€™s chat
-Get a โ€˜Likeโ€™ from any user profile
https://fortbridge.co.uk/research/feeld-dating-app-nudes-data-publicly-available/
๐Ÿ”ฅ9๐ŸŒš5๐Ÿคฃ5๐Ÿ‘4โค1๐Ÿคฎ1
0-Click exploit discovered in MediaTek Wi-Fi chipsets affects routers and smartphones (CVE-2024-20017).
Published PoC can be tested even from a smartphone
Technical details: https://blog.coffinsec.com/0day/2024/08/30/exploiting-CVE-2024-20017-four-different-ways.html
PoC: https://github.com/mellow-hype/cve-2024-20017
๐ŸŒš11๐Ÿคฃ4โค2๐Ÿ’ฉ2๐Ÿคฎ1
Undetected Android Spyware Targeting Individuals In South Korea
https://cyble.com/blog/undetected-android-spyware-targeting-individuals-in-south-korea/
๐Ÿ”ฅ12๐Ÿฅฑ4๐Ÿค”3๐Ÿ˜ด2๐Ÿ‘1๐ŸŒš1
This media is not supported in your browser
VIEW IN TELEGRAM
Hacking Kia: Remotely Controlling Cars With Just a License Plate
The vulnerability would've allowed an attacker to remotely control almost all vehicles made after 2013 using only the license plate
https://samcurry.net/hacking-kia
๐Ÿ”ฅ25๐Ÿ˜ฑ6๐ŸŒš3๐Ÿ‘2
Analysis and PoC for CVE-2024-7965 vulnerability that allows to execute arbitrary code in the Google Chrome
It affects mostly Android smartphones and Apple laptops released after November 2020.
If hackers have an exploit to escape from the browser sandbox, they can gain full control over the browser application: read passwords and hijack user sessions.
Info: https://bi.zone/eng/expertise/blog/analiz-uyazvimosti-cve-2024-7965/
PoC: https://github.com/bi-zone/CVE-2024-7965
๐Ÿ”ฅ11๐Ÿ‘3โคโ€๐Ÿ”ฅ2๐Ÿ˜ฑ2