hackingymas's profile picture. La ignorancia esclaviza, el conocimiento nos hace libres, la libertad nos hace felices, la felicidad (y sólo eso) nos hace tener éxito en la vida.

Hacking y Mas

@hackingymas

La ignorancia esclaviza, el conocimiento nos hace libres, la libertad nos hace felices, la felicidad (y sólo eso) nos hace tener éxito en la vida.

Hacking y Mas รีโพสต์แล้ว

⚠️ Self-Spreading WhatsApp Malware “SORVEPOTEL” Detected thehackernews.com/2025/10/resear… A new malware strain leverages WhatsApp Web on Windows to self-propagate via malicious ZIP attachments, escalating rapidly across contacts without needing heavy user interaction. It embeds via…


Hacking y Mas รีโพสต์แล้ว

💥 Wiz Research has uncovered a critical Redis vulnerability that's been hiding for 13 years We found RediShell (CVE-2025-49844): an RCE bug in Redis that affects every version of Redis out there. It's rated CVSS 10 - the highest severity possible. The vulnerability lets…

wiz_io's tweet image. 💥 Wiz Research has uncovered a critical Redis vulnerability that's been hiding for 13 years

We found RediShell (CVE-2025-49844): an RCE bug in Redis that affects every version of Redis out there. It's rated CVSS 10 - the highest severity possible.

The vulnerability lets…


Hacking y Mas รีโพสต์แล้ว

#China 🇨🇳 - Huawei Technologies Co., Ltd. has reportedly suffered a data breach, with a threat actor offering to sell company source code and internal tools. dailydarkweb.net/huawei-technol…

DailyDarkWeb's tweet image. #China 🇨🇳 - Huawei Technologies Co., Ltd. has reportedly suffered a data breach, with a threat actor offering to sell company source code and internal tools. dailydarkweb.net/huawei-technol…

Hacking y Mas รีโพสต์แล้ว

📌CVE-2025-32463 -Local Privilege Escalation Vulnerability in Sudo📌 -In the article below, I explained how CVE-2025-32463 can be easily exploited using a vulnerability in the sudo version, along with a POC file. #BugBounty #CyberSecurity

NullSecurityX's tweet image. 📌CVE-2025-32463 -Local Privilege Escalation Vulnerability in Sudo📌
-In the article below, I explained how CVE-2025-32463 can be easily exploited using a vulnerability in the sudo version, along with a POC file.
#BugBounty #CyberSecurity

Hacking y Mas รีโพสต์แล้ว

🚨 We've just released multiple in-depth modules in our Android security courses. Learn to reverse JNI bindings, trace native interactions, & fuzz them for vulnerabilities. Perfect for uncovering hidden attack surfaces in Android apps & closed-source components! (More in the…

8kSec's tweet image. 🚨 We've just released multiple in-depth modules in our Android security courses. Learn to reverse JNI bindings, trace native interactions, & fuzz them for vulnerabilities. Perfect for uncovering hidden attack surfaces in Android apps & closed-source components! 
(More in the…

Hacking y Mas รีโพสต์แล้ว

CVE-2025-10184 is permission bypass that affects multiple #OnePlus devices running OxygenOS 12–15 (NOT FIXED) with PoC. This vulnerability allows any application installed on the device to read SMS/MMS without permission, user interaction, or consent. rapid7.com/blog/post/cve-…

androidmalware2's tweet image. CVE-2025-10184 is permission bypass that affects multiple #OnePlus devices running OxygenOS 12–15 (NOT FIXED) with PoC.
This vulnerability allows any application installed on the device to read SMS/MMS without permission, user interaction, or consent.
rapid7.com/blog/post/cve-…

Hacking y Mas รีโพสต์แล้ว

Community Write-Ups from 8kSec Mobile Security Battlegrounds Our free Mobile Security Labs have inspired some excellent technical deep dives. Below is a running list of community write-ups that detail their techniques, tooling, and exploitation steps. 🤖Android Labs @f0rk3b0mb

8kSec's tweet image. Community Write-Ups from 8kSec Mobile Security Battlegrounds
Our free Mobile Security Labs have inspired some excellent technical deep dives. Below is a running list of community write-ups that detail their techniques, tooling, and exploitation steps.

🤖Android Labs

@f0rk3b0mb…
8kSec's tweet image. Community Write-Ups from 8kSec Mobile Security Battlegrounds
Our free Mobile Security Labs have inspired some excellent technical deep dives. Below is a running list of community write-ups that detail their techniques, tooling, and exploitation steps.

🤖Android Labs

@f0rk3b0mb…
8kSec's tweet image. Community Write-Ups from 8kSec Mobile Security Battlegrounds
Our free Mobile Security Labs have inspired some excellent technical deep dives. Below is a running list of community write-ups that detail their techniques, tooling, and exploitation steps.

🤖Android Labs

@f0rk3b0mb…

Hacking y Mas รีโพสต์แล้ว

🚨Data Breach Alert‼️ 🇲🇽Mexico - Infonavit The threat actor named Sc0rp10nn is selling a full database allegedly stolen from Infonavit, Mexico’s largest housing loan institute. According to the post, the dataset contains over 57 million records. Exposed information includes…

H4ckmanac's tweet image. 🚨Data Breach Alert‼️

🇲🇽Mexico - Infonavit

The threat actor named Sc0rp10nn is selling a full database allegedly stolen from Infonavit, Mexico’s largest housing loan institute. 

According to the post, the dataset contains over 57 million records. 

Exposed information includes…

Hacking y Mas รีโพสต์แล้ว

Tell me you are working on C2 agent without telling me you are working on a C2 agent.

lsecqt's tweet image. Tell me you are working on C2 agent without telling me you are working on a C2 agent.

Hacking y Mas รีโพสต์แล้ว

NEW - Venezuela’s Maduro says he has a Huawei smartphone gifted by Xi, calling it “the best in the world” and immune to U.S. surveillance

จาก Open Source Intel

Hacking y Mas รีโพสต์แล้ว

The "Critical" Chrome GPU bug (CVE-2025-9478) is suspicious. Background: Google Big Sleep recently patched a bunch of high/critical issues in privileged Chrome GPU (their new AI fuzzer). I looked at the code. All the issues require such an uncommon platform functionality, it's…

alisaesage's tweet image. The "Critical" Chrome GPU bug (CVE-2025-9478) is suspicious.

Background: Google Big Sleep recently patched a bunch of high/critical issues in privileged Chrome GPU (their new AI fuzzer). I looked at the code.

All the issues require such an uncommon platform functionality, it's…
alisaesage's tweet image. The "Critical" Chrome GPU bug (CVE-2025-9478) is suspicious.

Background: Google Big Sleep recently patched a bunch of high/critical issues in privileged Chrome GPU (their new AI fuzzer). I looked at the code.

All the issues require such an uncommon platform functionality, it's…
alisaesage's tweet image. The "Critical" Chrome GPU bug (CVE-2025-9478) is suspicious.

Background: Google Big Sleep recently patched a bunch of high/critical issues in privileged Chrome GPU (their new AI fuzzer). I looked at the code.

All the issues require such an uncommon platform functionality, it's…
alisaesage's tweet image. The "Critical" Chrome GPU bug (CVE-2025-9478) is suspicious.

Background: Google Big Sleep recently patched a bunch of high/critical issues in privileged Chrome GPU (their new AI fuzzer). I looked at the code.

All the issues require such an uncommon platform functionality, it's…

Hacking y Mas รีโพสต์แล้ว

Writing exploits for MS-RPC services. An interesting case study of DoS inside Local Session Manager and how an exploit dev process looks like. A great post by Remco van der Meer (@incendiumrockz). Source: incendium.rocks/posts/Exploit-… #redteam #blueteam #maldev #malwaredevelopment

SEKTOR7net's tweet image. Writing exploits for MS-RPC services.

An interesting case study of DoS inside Local Session Manager and how an exploit dev process looks like.

A great post by Remco van der Meer (@incendiumrockz).

Source: incendium.rocks/posts/Exploit-…

#redteam #blueteam #maldev #malwaredevelopment

Hacking y Mas รีโพสต์แล้ว

[1day1line] CVE-2025-31200: Remote Code Execution Vulnerability due to Out-of-Bounds Write in Apple CoreAudio Framework hackyboiz.github.io/2025/08/26/ji9… Today's 1day1line covers an RCE vulnerability found in the Apple CoreAudio framework. The Attacker may led to code execution via…


Hacking y Mas รีโพสต์แล้ว

The binary taxonomy chapter from From Day Zero to Zero Day is free to download—and it's exactly the systematic approach most security pros are missing. @spaceraccoonsec shows you how to quickly classify and approach different binary types, from native code to managed memory…


Hacking y Mas รีโพสต์แล้ว

excellent writeup that highlights how many 0-days are simply asking nicely for something.

jamieantisocial's tweet image. excellent writeup that highlights how many 0-days are simply asking nicely for something.

🚨압축 파일 내 파일 경로를 조작하여, 해제 시 대상 디렉토리 외부에 파일을 생성하거나 기존 파일을 덮어쓰는 Zip Slip 취약점이 최근까지도 발견이 되고 있습니다. 의심스러운 압축 파일을 해제할 때 각별한 주의하시고 프로그램을 최신 상태로 유지하시길 바랍니다. 🔗asec.ahnlab.com/ko/89806/

AhnLab_SecuInfo's tweet image. 🚨압축 파일 내 파일 경로를 조작하여, 해제 시 대상 디렉토리 외부에 파일을 생성하거나 기존 파일을 덮어쓰는 Zip Slip 취약점이 최근까지도 발견이 되고 있습니다.
의심스러운 압축 파일을 해제할 때 각별한 주의하시고 프로그램을 최신 상태로 유지하시길 바랍니다.
🔗asec.ahnlab.com/ko/89806/


Hacking y Mas รีโพสต์แล้ว

TrapFlagForSyscalling - Evading userland hooks through indirect tampered syscalls with the Trap Flag. github.com/Maldev-Academy…


Hacking y Mas รีโพสต์แล้ว

CVE-2025-5419 POC Google Chrome heap corruption via a crafted HTML page github.com/mistymntncop/C… #CVE #chrome #infosec by @mistymntncop


Hacking y Mas รีโพสต์แล้ว

Technical Analysis of SAP Exploit Script (Visual Composer “Metadata Uploader” Exploit) CVE-2025–31324 detect.fyi/technical-anal…


United States เทรนด์

Loading...

Something went wrong.


Something went wrong.