Telega Telegram Client Security: MitM, GPL Violations, Data Leak https://sudonull.com/telega-telegram-client-security-mitm-gpl-violations-data-leak
A deep dive into the 'Telega' Telegram client reveals critical security flaws, GPL v2 license violations, and potential MitM threats due to a Russian state root certificate and disabled security checks. User data is at risk.
Zapret 2 GUI: Analysis of Spyware and Privacy Threats https://sudonull.com/zapret-2-gui-analysis-of-spyware-and-privacy-threats
Detailed technical analysis of Zapret 2 GUI revealed hidden malware: disabling Windows Defender, installing Root CA for MitM attacks, data exfiltration. Learn how to protect yourself.
Running Linux containers on Android without root: Podroid and Podman https://sudonull.com/running-linux-containers-on-android-without-root-podroid-and-podman
How to run Podman and Linux containers on Android without root. Overview of the architecture, installation, and usage scenarios of the Podroid project.
Cascadeur 2026 and Unity 6: gamedev updates https://sudonull.com/cascadeur-2026-and-unity-6-gamedev-updates
Breakdown of Cascadeur 2026.1 with Root Motion, Outline in Unity 6 URP, TTF-DOOM and indie sales. Technical cases for middle/senior dev. Study the features and optimizations.
RCE in Marimo CVE-2026-39987: exploit in 9 hours https://sudonull.com/rce-in-marimo-cve-2026-39987-exploit-in-9-hours
Critical pre-auth RCE in Marimo up to 0.23.0 gives root-shell via WebSocket. Sysdig: attack 9 hours after advisory. Update, rotate secrets, protect AI toolchain. Detailed analysis and measures.