ByteBrief
We're a portrait publication through and through. Turn your phone back and your briefing picks up right where you left it.
(We tried widescreen once. It wasn't us.)
A researcher discovered that clicking a crafted link in a Telegram group allows attackers to steal login credentials via IPC injection. The flaw stems from how the app handles commands, letting a malicious link execute arbitrary file reads to grab encrypted session keys.
Tap to vote and see what everyone thinks.
Summary by ByteBrief