February 26, 2025 at 01:49PM

■■■□□ Interesting thread | 𝕏 Deep dive into the Signal arbitrary deletion vulnerability I discovered in Signal Desktop: In Signal Desktop, attachments are stored in a designated folder (typically “attachments.noindex”). The deletion logic resolves this folder’s absolute path using fs.realpathSync, which inherently follows symbolic links. https://x.com/jipisback/status/1894682205500088793

February 25, 2025 at 05:21PM

ANY.RUN presents an educational program on malware analysis, a course designed for university and students, individual researchers, and security teams. You will upgrade your skills and get: 》Quality education in the field of malware analysis 》Practical application of theoretical knowledge 》Access to relevant educational materials 》Interactive classes with real simulations and laboratory work 》Certificate at…