TGViewer
Android Security & Malware Android Security & Malware @androidmalware · 44.8K subscribers
Post #2368 9.02K
Write-up on 1-click Exploit in South Korea's KakaoTalk mobile chat app allowed to steal access token and remotely exfiltrate all chat messages.
Issue is fixed, but the bug reporter haven't received reward, because only Koreans are eligible to receive bounty
https://stulle123.github.io/posts/kakaotalk-account-takeover/
stulle123 1-click Exploit in South Korea's biggest mobile chat app Stealing another KakaoTalk user’s chat messages with a simple 1-click exploit.
  • 😢 28
  • ❤ 7
  • 🔥 2
  • 👍 1
  • 🤬 1
More from @androidmalware
  1. Oct 1, 2026CVE-2026-86950: The Great Glyph Grift An in-the-wild iOS bug with a possible WhatsApp zero…
  2. Sep 29, 2026CVE-2026-20687: AppleJPEGDriver startDecoder Timeout UAF — iOS/macOS kernel vulnerability…
  3. Sep 29, 2026How we found 24 Android vulnerabilities using our open source AI security agent https://gi…
  4. Sep 29, 2026From BlackCat to Panda Workshop: Inside the Evolving C2 Panel Behind RATHat https://www.cl…
  5. Sep 28, 2026apk-reverse: An Agent Skill for Android APK reverse engineering, debloating, ad removal, s…
  6. Sep 28, 2026A native APK and DEX decompiler written in Rust https://github.com/Ch0pin/rdx
Threads Profile ViewerView any public Threads profile without an account.Open ThreadLook →Writing with AI? Make it sound human.Metric37 rewrites AI drafts so they read naturally. Free AI detector, 1,500 words free.Try Metric37 →