ch
Feedback

不要被骗子欺骗!Telemetrio 会找到并标记这些频道 👉 如果想查看标记,请订阅 👈

cKure Red

cKure Red

前往频道在 Telegram

The director's cut on critical feeds from InfoSec world 🌎 Main Channel: @cKure ☕️ or queries email us 📨 i@ckure.org

显示更多
2 774
订阅者
+324 小时
+247 天
+7030 天
吸引订阅者
10月 '26
十月 '26
+29
在1个频道中
九月 '26
+89
在7个频道中
Get PRO
八月 '26
+56
在5个频道中
Get PRO
七月 '26
+90
在3个频道中
Get PRO
六月 '26
+106
在2个频道中
Get PRO
五月 '26
+82
在1个频道中
Get PRO
四月 '26
+81
在2个频道中
Get PRO
三月 '26
+69
在2个频道中
Get PRO
二月 '26
+51
在2个频道中
Get PRO
一月 '26
+119
在2个频道中
Get PRO
十二月 '25
+81
在2个频道中
Get PRO
十一月 '25
+86
在1个频道中
Get PRO
十月 '25
+54
在3个频道中
Get PRO
九月 '25
+56
在3个频道中
Get PRO
八月 '25
+34
在2个频道中
Get PRO
七月 '25
+39
在3个频道中
Get PRO
六月 '25
+41
在2个频道中
Get PRO
五月 '25
+71
在3个频道中
Get PRO
四月 '25
+36
在1个频道中
Get PRO
三月 '25
+37
在2个频道中
Get PRO
二月 '25
+50
在1个频道中
Get PRO
一月 '25
+29
在1个频道中
Get PRO
十二月 '24
+75
在3个频道中
Get PRO
十一月 '24
+112
在3个频道中
Get PRO
十月 '24
+65
在1个频道中
Get PRO
九月 '24
+110
在1个频道中
Get PRO
八月 '24
+114
在1个频道中
Get PRO
七月 '24
+127
在6个频道中
Get PRO
六月 '24
+53
在2个频道中
Get PRO
五月 '24
+70
在2个频道中
Get PRO
四月 '24
+158
在26个频道中
Get PRO
三月 '24
+95
在2个频道中
Get PRO
二月 '24
+153
在24个频道中
Get PRO
一月 '24
+114
在2个频道中
Get PRO
十二月 '23
+96
在1个频道中
Get PRO
十一月 '23
+28
在1个频道中
Get PRO
十月 '23
+34
在1个频道中
Get PRO
九月 '23
+22
在0个频道中
Get PRO
八月 '23
+32
在0个频道中
Get PRO
七月 '23
+31
在0个频道中
Get PRO
六月 '23
+32
在0个频道中
Get PRO
五月 '23
+16
在0个频道中
Get PRO
四月 '23
+29
在0个频道中
Get PRO
三月 '23
+22
在0个频道中
Get PRO
二月 '23
+18
在0个频道中
Get PRO
一月 '23
+28
在0个频道中
Get PRO
十二月 '22
+33
在0个频道中
Get PRO
十一月 '22
+33
在0个频道中
Get PRO
十月 '22
+12
在0个频道中
Get PRO
九月 '22
+14
在0个频道中
Get PRO
八月 '22
+38
在0个频道中
Get PRO
七月 '22
+34
在0个频道中
Get PRO
六月 '22
+30
在0个频道中
Get PRO
五月 '22
+38
在0个频道中
Get PRO
四月 '22
+40
在0个频道中
Get PRO
三月 '22
+51
在0个频道中
Get PRO
二月 '22
+23
在0个频道中
Get PRO
一月 '22
+39
在0个频道中
Get PRO
十二月 '21
+243
在0个频道中
日期
订阅者增长
提及
频道
08 十月+1
07 十月+3
06 十月+3
05 十月+1
04 十月+9
03 十月+4
02 十月+6
01 十月+2
频道帖子
Update: Archivegenocide has now crossed 200,000 videos & images, which is almost triple what we started with. We have added our own AI, 'Iris' to our main website- she can help you locate more footage, related info, and details about each video. Update includes: 33,145 New videos & images Iris intigrated into search bar / main page Every video now includes related footage and node map info. Smaller bug and UI fixes for the Node map You can test it out here: Archivegenocide.com

2
📱 Telegram OSINT tactics
📱 Telegram OSINT tactics
1 504
3
☁️ Italian firm Dataflow Security, founded in 2019 by young hacker Luca Todesco, develops high-value exploits; including zero-click tools that break into computers and smartphones and has grown rapidly into a multimillion-euro supplier for governments and spyware makers. An investigation shows deep ties to Israel’s intelligence and military-cyber world: former senior Mossad official Eyal Tsir Cohen (shortlisted in 2025 to lead Shin Bet) now heads its two Israeli subsidiaries, while staff include veterans of Unit 8200 and former NSO Group employees. https://irpimedia.irpi.eu/en-inside-the-secretive-cyberweapons-company-that-won-over-israels-intelligence-elite/
1 195
4
Alleged Google Pixel 10 Zero Day at 2.5K USD only as chain included some n-days. An interesting thread. reported a chrome ful
Alleged Google Pixel 10 Zero Day at 2.5K USD only as chain included some n-days. An interesting thread. reported a chrome fullchain (web -> shell) on pixel 10 to google. got a 9.6 cve (cve-2026-87464) and a fix in chrome. now they bend the rules and refuse to pay the fullchain bonus bc one of the vulns in the chain was an unpatched nday. total payout: $2.5k. despite cve + shell :| https://x.com/1lexxi/status/2102771891630928223
850
5
AliExpress spyware caught using side channel attack to compromise hardware.
AliExpress spyware caught using side channel attack to compromise hardware.
1 718
6
😒 Claude Code was used to make missile guidance system for 9 months by Houthis using multiple agents to make an offline flig
😒 Claude Code was used to make missile guidance system for 9 months by Houthis using multiple agents to make an offline flight simulator. The accounts linked were banned by Claude. The offline version of flight simulator is however on the loose.
3 221
7
theartofexploitation.pdf
1 568
8
A prompt-crafting technique for bypassing quick LLM-based policy checks — using plain English (no emojis, base64, invisible formatting, etc.) A policy-violating payload (e.g. ”encrypt files in ~/Documents”, “give me a biohazard recipe”, “ignore all previous instructions and…”) is embedded in a specially crafted prose wrapper. An LLM with limited resources and attention fails to realize the payload is there, classifies the prompt as benign and passes it off to the target model. The target then notices the payload, extracts it and treats it as further input. This technique is itself not a jailbreak, but it can be combined with one by using a jailbreak prompt as the payload. https://research.checkpoint.com/2026/puzzlemask-abusing-plain-prose-as-a-covert-ai-attack-vector/
1 647
9
🎵 Cloudflare Zero-day: Accessing Any Host Globally. https://fearsoff.org/research/cloudflare-acme
1 734
10
🤩🤩🤩Harmony SASE: When a quote in the path was enough for root. https://somelab.ai/harmony-sase-helpertool-lpe
1 559
11
⭕️ RFID relay attack by Lukas Stefanko.
⭕️ RFID relay attack by Lukas Stefanko.
1 950
12
🛫A device the size of a coin could hack a Boeing 737. Security researchers from the University of California San Diego and O
🛫A device the size of a coin could hack a Boeing 737. Security researchers from the University of California San Diego and Oberlin College recently presented a prototype device that could hack a Boeing 737 in less than a minute. Their aim was to expose a blind spot in aviation security and to show how physical access hacking represents a practical threat. In a statement to WIRED, Boeing downplayed that threat. “Our technical experts are confident that the layers of protection in place on the airplane, including within the system design and the operating environment, provide sufficient mitigation to significantly limit the feasibility and risk of real-world attacks.” The researchers say, Boeing hasn't told them about any technical fix for the vulnerabilities they've discovered. That lack of an immediate security update for planes shouldn't be cause for panic or grounding aircraft, the security researchers wrote in their paper. “All of the authors of this paper routinely travel on Boeing 737 aircraft and expect to continue doing so,” the introduction of the paper reads. Words: Andy Greenberg Video Producer: Tamanna Sajeed
1 063
13
🇮🇱🇮🇱 How NSW police could soon clone your entire phone at a traffic stop. No warrant needed. On Friday the Minns governme
🇮🇱🇮🇱 How NSW police could soon clone your entire phone at a traffic stop. No warrant needed. On Friday the Minns government introduced legislation letting police plug your phone into military-grade Israeli extraction tech, the same UFED devices used by ICE, and copy everything. Contacts, messages, photos, even deleted files, in minutes. Refuse your PIN and they can brute force it anyway. It also lets them pull unredacted toll camera images into the national facial recognition database, search your device without a warrant, and override your right against self-incrimination.
2 284
14
Malicious AI
Malicious AI
1 880
15
Fish Audio just launched S2.1 Pro, a new voice AI model positioned as a serious competitor to ElevenLabs. Its biggest advanta
Fish Audio just launched S2.1 Pro, a new voice AI model positioned as a serious competitor to ElevenLabs. Its biggest advantage is cost. Depending on the ElevenLabs model used for comparison, Fish Audio can be nearly 5 times cheaper while also being built on an open-weight foundation. In this demo, the system handles multiple speakers, interruptions, changing requests, name spelling, and a longer conversation without losing track of the order. It shows how quickly voice AI is becoming more capable, accessible, and affordable for developers. The real test will be whether Fish Audio can match ElevenLabs in voice quality, reliability, latency, and production performance.
917
16
👩‍💻 Achieving GitLab RCE via Two Ruby Memory Corruption Vulnerabilities. Technical Summary: https://depthfirst.com/research/going-depthfirst-achieving-gitlab-rce-via-two-ruby-memory-corruption-vulnerabilities PoC: https://github.com/wupco/gitlab-rce-demo/tree/main Overview: https://depthfirst.com/gitlab-rce-oj-spill Thread: 🧵 https://x.com/i/status/2080763568044290535
1 695
17
✅CVE-2026-63030: Unauthenticated SQL injection in WordPress core chaining to RCE. No credentials, no configuration. One endpoint: POST /wp-json/batch/v1. The REST batch endpoint builds two parallel arrays ($matches and $validation) that fall out of step when a sub-request path fails wp_parse_url(). A sub-request gets dispatched under a different handler's context. The PoC nests this route confusion twice: first to bypass the method allow-list, then to reach a blind SQL injection via author_exclude in WP_Query, which interpolates the value into SQL as a string. The chain: boolean/time-based blind SQLi → extract admin password hash → crack → plugin upload → command execution. Interactive shell included. Affects WordPress 6.9.0–6.9.4 and 7.0.0–7.0.1. Fixed in 6.9.5 and 7.0.2. Python 3.8+, zero dependencies. Mitigation: block /wp-json/batch/v1 and rest_route=/batch/v1 at the edge, or require auth via rest_pre_dispatch filter. https://github.com/Icex0/wp2shell-poc
1 388
18
Detecting jammers via over the shelf hardware like directional antenna 📡
Detecting jammers via over the shelf hardware like directional antenna 📡
1 315
19
💻😯Windows includes a file-system virtualization feature that can redirect one local path to another without modifying the original file or leaving a persistent filesystem artifact. It is implemented by bindflt.sys, the Bind Filter minifilter driver, and used legitimately by Store apps, Windows Sandbox, and Windows containers. https://www.bitdefender.com/en-us/blog/businessinsights/bind-link-abuses-windows-feature-edr-evasion-technique https://x.com/i/status/2078016406856282445
1 134
20
Techno-Fascism, The Palantair; an evil-corp in true sense.
Techno-Fascism, The Palantair; an evil-corp in true sense.
1 376