home.social

#malicious — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #malicious, aggregated by home.social.

  1. Відмова від спадщини
    Як деякі з вас, можливо, вже знають, порожні будинки стали соціальною проблемою в Японії. Багато з них були покинуті.

    pixiv.net/novel/show.php?id=23

    <>

    #renunciation #property #inheritance #already #vacant #house #problem #Japan #abandoned #across #country #unattended #dangerous #demolished #responsibly #situation #cases #people #excuses #enter #permission #ridiculous #stories #ownership #malicious #family #upervisory

  2. Fake #OpenAI #repository on #Hugging #Face pushes #infostealer #malware A #malicious #HuggingFace repository that reached the platform’s trending list impersonated OpenAI’s “Privacy Filter” project to deliver information-stealing malware to Windows users.

    The repository briefly reached #1 on Hugging Face and accumulated 244,000 downloads before the platform responded to reports and removed it.
    #computersecurity #security

  3. Fake #OpenAI #repository on #Hugging #Face pushes #infostealer #malware A #malicious #HuggingFace repository that reached the platform’s trending list impersonated OpenAI’s “Privacy Filter” project to deliver information-stealing malware to Windows users.

    The repository briefly reached #1 on Hugging Face and accumulated 244,000 downloads before the platform responded to reports and removed it.
    #computersecurity #security

  4. Fake #OpenAI #repository on #Hugging #Face pushes #infostealer #malware A #malicious #HuggingFace repository that reached the platform’s trending list impersonated OpenAI’s “Privacy Filter” project to deliver information-stealing malware to Windows users.

    The repository briefly reached #1 on Hugging Face and accumulated 244,000 downloads before the platform responded to reports and removed it.
    #computersecurity #security

  5. Fake #OpenAI #repository on #Hugging #Face pushes #infostealer #malware A #malicious #HuggingFace repository that reached the platform’s trending list impersonated OpenAI’s “Privacy Filter” project to deliver information-stealing malware to Windows users.

    The repository briefly reached #1 on Hugging Face and accumulated 244,000 downloads before the platform responded to reports and removed it.
    #computersecurity #security

  6. Fake #OpenAI #repository on #Hugging #Face pushes #infostealer #malware A #malicious #HuggingFace repository that reached the platform’s trending list impersonated OpenAI’s “Privacy Filter” project to deliver information-stealing malware to Windows users.

    The repository briefly reached #1 on Hugging Face and accumulated 244,000 downloads before the platform responded to reports and removed it.
    #computersecurity #security

  7. Widely used #DaemonTools disk app #backdoored in month long supply-chain attack

    Daemon Tools, a widely used app for mounting disk images, has been backdoored in a monthlong compromise that has pushed #malicious updates from the servers of its developer, researchers said Tuesday.
    #security #supplychain

    arstechnica.com/security/2026/

  8. حكينا قبل برشة مرّات على مشاريع يمنعوا ال
    #AI
    أما عمرنا ما حكينا على مشاريع يقبلوا ال
    #AI
    مثلا
    #Mesa
    إلّي صرّحت راهي مش تقبل مساهمات ال
    #AI
    phoronix.com/news/Mesa-Two-Gen
    ثمّة إقتراح متاع
    #Driver
    يحارب ال
    #USB Devices
    إلّي فيهم مشاكل
    #Malicious
    itsfoss.com/news/linux-driver-
    #Fedora
    كانت توفّر ال
    #Updates
    ل
    #Mesa #Drivers
    عادي كيمة كلّ
    #Update
    أما توّ
    #Fedora
    عملتهم
    #Exception
    و مش يولّيوا يجيوا مع كلّ
    #Release
    phoronix.com/news/Mesa-Updates

  9. Відмова від спадщини
    Як деякі з вас, можливо, вже знають, порожні будинки стали соціальною проблемою в Японії. Багато з них були покинуті.

    pixiv.net/novel/show.php?id=23

    <>

    #renunciation #property #inheritance #already #vacant #house #problem #Japan #abandoned #across #country #unattended #dangerous #demolished #responsibly #situation #cases #people #excuses #enter #permission #ridiculous #stories #ownership #malicious #family #upervisory

  10. Nekogram developer stealing user mobile numbers for all logged accounts via heavy obfuscated Java code.
    Play store app already having this malicious code.
    Developer lying by saying no numbers are shared via its bot.
    github.com/Nekogram/Nekogram/i
    t.me/NekoUpdates/531?comment=6
    Developer deleting comments and locked the comments. I have copied the whole thing over to my paste: pb.fbin.in/?47a395b346798a65#3
    #nekogram #malicious #developer #stealing
    @beyondmachines1

  11. #AI #code often includes references to non-existent dependencies. These references are commonly called “#hallucinations”. A new type of #attack has arisen that involves an attacker registering a package whose name is frequently hallucinated. When AI code containing this #hallucination is accepted, and this dependency is installed, the attacker can ship #malicious code into the project’s build, introducing a major #security vulnerability. This type of attack has become known as “#slopsquatting”.

  12. Termux

    • platform: Android
    • type: sh environment
    • goal: have the power of linux sh in Android
    • license: GNU GPL Open Source
    • development: active
    • users: more than I can imagine

    Termux which is the powerful Linux sh environment for Android is constantly under attack by Google

    I've installed it on many different Androids with different versions and classes of the Android operating system

    The direct reaction of the Play Store daemon is the same.

    Warning Termux is an unsafe program!

    wtf?

    Why does google lie and say that Termux is a program that should not be trusted?

    This is a false and blatant deceptive action of Google, who is snooping on the Android phone, your personal property, because Termux gives you the flexibility to look at things which Google tries to hide from you on your own phone!

    The Termux distribution is regularly patched and updated just like any other regular Linux distribution which is properly maintained

    Keep installing Termux it gives you freedom on your Androids

    #termux #linux #OpenSource #google #false #malicious #Alphabet #flagging #GNU #GPL #programming #distro #technology

  13. Termux

    • platform: Android
    • type: sh environment
    • goal: have the power of linux sh in Android
    • license: GNU GPL Open Source
    • development: active
    • users: more than I can imagine

    Termux which is the powerful Linux sh environment for Android is constantly under attack by Google

    I've installed it on many different Androids with different versions and classes of the Android operating system

    The direct reaction of the Play Store daemon is the same.

    Warning Termux is an unsafe program!

    wtf?

    Why does google lie and say that Termux is a program that should not be trusted?

    This is a false and blatant deceptive action of Google, who is snooping on the Android phone, your personal property, because Termux gives you the flexibility to look at things which Google tries to hide from you on your own phone!

    The Termux distribution is regularly patched and updated just like any other regular Linux distribution which is properly maintained

    Keep installing Termux it gives you freedom on your Androids

    #termux #linux #OpenSource #google #false #malicious #Alphabet #flagging #GNU #GPL #programming #distro #technology

  14. Termux

    • platform: Android
    • type: sh environment
    • goal: have the power of linux sh in Android
    • license: GNU GPL Open Source
    • development: active
    • users: more than I can imagine

    Termux which is the powerful Linux sh environment for Android is constantly under attack by Google

    I've installed it on many different Androids with different versions and classes of the Android operating system

    The direct reaction of the Play Store daemon is the same.

    Warning Termux is an unsafe program!

    wtf?

    Why does google lie and say that Termux is a program that should not be trusted?

    This is a false and blatant deceptive action of Google, who is snooping on the Android phone, your personal property, because Termux gives you the flexibility to look at things which Google tries to hide from you on your own phone!

    The Termux distribution is regularly patched and updated just like any other regular Linux distribution which is properly maintained

    Keep installing Termux it gives you freedom on your Androids

    #termux #linux #OpenSource #google #false #malicious #Alphabet #flagging #GNU #GPL #programming #distro #technology

  15. Termux

    • platform: Android
    • type: sh environment
    • goal: have the power of linux sh in Android
    • license: GNU GPL Open Source
    • development: active
    • users: more than I can imagine

    Termux which is the powerful Linux sh environment for Android is constantly under attack by Google

    I've installed it on many different Androids with different versions and classes of the Android operating system

    The direct reaction of the Play Store daemon is the same.

    Warning Termux is an unsafe program!

    wtf?

    Why does google lie and say that Termux is a program that should not be trusted?

    This is a false and blatant deceptive action of Google, who is snooping on the Android phone, your personal property, because Termux gives you the flexibility to look at things which Google tries to hide from you on your own phone!

    The Termux distribution is regularly patched and updated just like any other regular Linux distribution which is properly maintained

    Keep installing Termux it gives you freedom on your Androids

    #termux #linux #OpenSource #google #false #malicious #Alphabet #flagging #GNU #GPL #programming #distro #technology

  16. Termux

    • platform: Android
    • type: sh environment
    • goal: have the power of linux sh in Android
    • license: GNU GPL Open Source
    • development: active
    • users: more than I can imagine

    Termux which is the powerful Linux sh environment for Android is constantly under attack by Google

    I've installed it on many different Androids with different versions and classes of the Android operating system

    The direct reaction of the Play Store daemon is the same.

    Warning Termux is an unsafe program!

    wtf?

    Why does google lie and say that Termux is a program that should not be trusted?

    This is a false and blatant deceptive action of Google, who is snooping on the Android phone, your personal property, because Termux gives you the flexibility to look at things which Google tries to hide from you on your own phone!

    The Termux distribution is regularly patched and updated just like any other regular Linux distribution which is properly maintained

    Keep installing Termux it gives you freedom on your Androids

    #termux #linux #OpenSource #google #false #malicious #Alphabet #flagging #GNU #GPL #programming #distro #technology

  17. [en] Signal #messenger: "two practical attacks that break the integrity properties of #Signal in its advertised #threat model" - Patched

    Paper #ETHZ

    "... protocol for resolving identities based on usernames and on phone numbers introduced a #vulnerability that allows a malicious server to inject arbitrary messages into one-to-one conversations under specific circumstances"

    "The second #attack is even more severe. It arises from Signal's Sealed Sender (SSS) feature, designed to allow sender identities to be hidden ... a combination of two errors in the #SSS implementation in #Android allows a #malicious server to #inject arbitrary messages into both one-to-one and group conversations."

    eprint.iacr.org/2026/484

    #security #cryptology #encryption #e2e #chat #messaging
    #ResearchHighlights

  18. [en] Signal #messenger: "two practical attacks that break the integrity properties of #Signal in its advertised #threat model" - Patched

    Paper #ETHZ

    "... protocol for resolving identities based on usernames and on phone numbers introduced a #vulnerability that allows a malicious server to inject arbitrary messages into one-to-one conversations under specific circumstances"

    "The second #attack is even more severe. It arises from Signal's Sealed Sender (SSS) feature, designed to allow sender identities to be hidden ... a combination of two errors in the #SSS implementation in #Android allows a #malicious server to #inject arbitrary messages into both one-to-one and group conversations."

    eprint.iacr.org/2026/484

    #security #cryptology #encryption #e2e #chat #messaging
    #ResearchHighlights

  19. [en] Signal #messenger: "two practical attacks that break the integrity properties of #Signal in its advertised #threat model" - Patched

    Paper #ETHZ

    "... protocol for resolving identities based on usernames and on phone numbers introduced a #vulnerability that allows a malicious server to inject arbitrary messages into one-to-one conversations under specific circumstances"

    "The second #attack is even more severe. It arises from Signal's Sealed Sender (SSS) feature, designed to allow sender identities to be hidden ... a combination of two errors in the #SSS implementation in #Android allows a #malicious server to #inject arbitrary messages into both one-to-one and group conversations."

    eprint.iacr.org/2026/484

    #security #cryptology #encryption #e2e #chat #messaging
    #ResearchHighlights

  20. [en] Signal #messenger: "two practical attacks that break the integrity properties of #Signal in its advertised #threat model" - Patched

    Paper #ETHZ

    "... protocol for resolving identities based on usernames and on phone numbers introduced a #vulnerability that allows a malicious server to inject arbitrary messages into one-to-one conversations under specific circumstances"

    "The second #attack is even more severe. It arises from Signal's Sealed Sender (SSS) feature, designed to allow sender identities to be hidden ... a combination of two errors in the #SSS implementation in #Android allows a #malicious server to #inject arbitrary messages into both one-to-one and group conversations."

    eprint.iacr.org/2026/484

    #security #cryptology #encryption #e2e #chat #messaging
    #ResearchHighlights

  21. [en] Signal #messenger: "two practical attacks that break the integrity properties of #Signal in its advertised #threat model" - Patched

    Paper #ETHZ

    "... protocol for resolving identities based on usernames and on phone numbers introduced a #vulnerability that allows a malicious server to inject arbitrary messages into one-to-one conversations under specific circumstances"

    "The second #attack is even more severe. It arises from Signal's Sealed Sender (SSS) feature, designed to allow sender identities to be hidden ... a combination of two errors in the #SSS implementation in #Android allows a #malicious server to #inject arbitrary messages into both one-to-one and group conversations."

    eprint.iacr.org/2026/484

    #security #cryptology #encryption #e2e #chat #messaging
    #ResearchHighlights

  22. For example:

    - #Chinese servers on Aegis #warships were removed due to reported #TrojanHorse(s): #chips in automated systems activated when China sends #malicious malware
    - Pentagon removed #Chinese #RareEarth #magnets from America’s most sophisticated aircraft the #F-35
    - Concerned #software attached to them could “phone home” for damaging code
    - While other magnets were made to fail.

    inquirer.com/opinion/commentar

    #HybridWar #malware #CyberSecurity

    [2/2]

  23. For example:

    - #Chinese servers on Aegis #warships were removed due to reported #TrojanHorse(s): #chips in automated systems activated when China sends #malicious malware
    - Pentagon removed #Chinese #RareEarth #magnets from America’s most sophisticated aircraft the #F-35
    - Concerned #software attached to them could “phone home” for damaging code
    - While other magnets were made to fail.

    inquirer.com/opinion/commentar

    #HybridWar #malware #CyberSecurity

    [2/2]