xbdms' Blog

Learn about privacy, security, and anonymity with the help of these articles.

December 16, 2021

In this blog, We have another Audacity fork, This is why open-source is the best. After the, “Muse Group” that aqcuried Audacity. Lots of people been forking and making their own app for people to use.

Download and build from source:

https://github.com/Sneeds-Feed-and-Seed/sneedacity

December 17, 2021

In this blog, I will cover the recent Facebook Messenger vulnerability that allowed for unlocking a persons android phone with physical access without knowing the pass code.

People, We need you to stop using Facebook and take back your privacy and security. Get decentralized social media if you want social media.

How to delete your facebook/facebook messenger account (Meta):

https://justdeleteme.xyz/#facebook

Sources:

https://portswigger.net/daily-swig/android-screen-lock-protection-thwarted-by-facebook-messenger-rooms-exploit

December 17, 2021

In this blog, I will you know about the recent threats Anonymous made to Elon Musk, and why these recent hacking activities like the colonial pipeline hack and the jsb hack are suspicious.

Sources:

https://www.youtube.com/watch?v=UG07x3aN3b0 – Anonymous Message To Elon Musk

December 17, 2021

In this blog, I teach you how to obtain an anonymous phone number and cell phone data to register an anonymous Telegram or Signal account.

  1. First thing first, We need a phone number. Either go to Silent.link or SMSPool.

  2. Go to Telegram or Signal website and download the desire application for your iOS, Android, or PC.

  3. Enter in the anonymous burner phone number and wait until you get a SMS Code.

  4. Now, Just setup your account as how you like it and make sure to harden your telegram account from hackers. Same goes to hardening your signal account from hackers aswell.

December 17, 2021

In this blog, I will go over the malicious exit node hacking that has been taking place on the TOR network over the past year. Someone has been attempting to do SSL downgrades and man in the middle attacks on users accessing bitcoin mixing services so that they can steal the cryptocurrency from mixer customers.

Sources:

https://nusenu.medium.com/tracking-one-year-of-malicious-tor-exit-relay-activities-part-ii-85c80875c5df

December 17, 2021

In this blog, I will cover the supply chain hack of passwordstate an enterprise password manager. This is why you don’t trust all password managers, And make sure it is very secure like Keepass or Bitwarden.

Don’t know what is Passwordstate, Check this video:

https://www.youtube.com/watch?v=eO7SXOQlxrc

Sources:

https://arstechnica.com/gadgets/2021/04/hackers-backdoor-corporate-password-manager-and-steal-customer-data/

December 17, 2021

In this blog, I let you guys know about the latest bluetooth vulnerabilities in linux.

Sources:

https://portswigger.net/daily-swig/bleedingtooth-google-drops-full-details-of-zero-click-linux-bluetooth-bug-chain-leading-to-rce

(CVE-2020-12351)

(CVE-2020-12352)

(CVE-2020-24490)

December 17, 2021

In this blog, I show you some awesome firefox browser addons that you probably aren't using.

Addons featured in this blog:

ublock origin

violent monkey

localcdn

sponsorblock search by image

keepassxc browser

downthemall

universal bypass

proxy switchy omega

December 17, 2021

In this blog, I will discuss some of the botnets (Muhstik and Mirai) that are using the recently discovered vulnerability in the java logging library log4j. Make sure to update to the latest version of log4j or switch to a different logger to avoid any breaches.

Sources:

https://logging.apache.org/log4j/2.x/security.html

https://blog.netlab.360.com/ten-families-of-malicious-samples-are-spreading-using-the-log4j2-vulnerability-now/

December 21, 2021

In this blog, I will show you how to opt-out of google analytics. If you want to opt-out, download and install the add-on for your web browser. The Google Analytics opt-out add-on is designed to be compatible with Chrome, Safari, Firefox and Microsoft Edge. In order to function, the opt-out add-on must be able to load and execute properly on your browser.