August 28, 2021 at 10:24PM

■■■■■ “XSS in Apple ID Server idmsa. apple .com” Tl;Dr: XSS on Apple ID server allowing an attacker to pop out an Apple login page that autofills apple credentials and 2FA. $10,000 Reward. https://zemnmez.medium.com/how-to-hack-apple-id-f3cc9b483a41 https://t.me/cKure/9096

August 28, 2021 at 09:14PM

■■■■□ SSD Advisory – Samsung S10+/S9 kernel 4.14 (Android 10) Kernel Function Address (.text) and Heap Address Information Leak. https://ssd-disclosure.com/ssd-advisory-samsung-s10-s9-kernel-4-14-android-10-kernel-function-address-text-and-heap-address-information-leak/ https://t.me/cKure/9095

August 28, 2021 at 03:28PM

● FYI: Our tools website ckure.xyz has an API malfunction and blocks valid requests to the site more often. This is not a behaviour that happens always. So most visitors should not face issues using the utilities. The fault is in the API logic that prevents proxy, TOR or known malicious IPs to connect to…

August 28, 2021 at 01:37PM

■□□□□ A threat actor is selling ATO (account takeover vulnerability) apparently on a well known crypto exchange for 50K USD. The vulnerability as per the attacker can force reset a user’s password. We could not verify this claim. https://t.me/cKure/9089