Problem with the pulse-sms deb package #phone #sms

https://askubuntu.com/q/1567892/612

Problem with the pulse-sms deb package

I was looking for a way to access the texts from my phone on my Ubuntu 24.04 desktop, and pulse-sms seemed to be a good option. I went to the web site, downloaded the .deb package, and installed it...

Ask Ubuntu
¿­Cómo te roba 5.000 euros un SMS que parece de tu banco?

Un SMS falso apareció en el hilo real del banco y acabó en un robo de 5.000 euros. Así funcionó la estafa y qué señales vigilar para no caer.

Don Porqué - El porqué detrás de cada noticia
【心級服務-2026年中考服務保障溫馨提示】尊敬的客戶,您好!2026年深圳中考將於6月26日-28日進行,爲給考生營造一個公平公正的應考環境,考試期間相關主管部門將統一在全市各考點開啓通信信號屏蔽儀,屆時可能會對考點周邊客戶的通話及上網質量造成影響,如:撥打電話頻繁失敗、無法接通、通話聲音出現斷續、手機上網慢或頻繁掉線等現象,待考試結束後即可恢復。若有不便,望考點周邊客戶予以支持理解。深圳移動祝所有學子考試順利!來了就是深圳人,就用深圳移動!【中國移動】#SMS

OXLOADER: new loader evading detection to drop infostealer

A previously undocumented Windows loader designated as OXLOADER delivers the CASTLESTEALER infostealer through malicious Google Ads campaigns, achieving remarkably low detection rates. The loader employs multiple obfuscation layers including control-flow flattening, opaque predicates, and mixed Boolean-Arithmetic techniques, along with self-modifying decryption stubs and abuse of the Windows .reloc section for shellcode staging. Distribution occurs via malvertising impersonating Node.js installations, redirecting victims through intermediary domains to Storj-hosted batch scripts. The loader implements five anti-VM and language checks, including CIS-region and Russian-language exclusions, suggesting a financially motivated Russian-speaking threat actor. OXLOADER uses DonutLoader to deliver the .NET-based CASTLESTEALER payload in memory, evading traditional detection mechanisms through deliberate engineering choices.

Pulse ID: 6a34874a45b9c09ee90c0aff
Pulse Link: https://otx.alienvault.com/pulse/6a34874a45b9c09ee90c0aff
Pulse Author: AlienVault
Created: 2026-06-19 00:03:22

Be advised, this data is unverified and should be considered preliminary. Always do further verification.

#CyberSecurity #ELF #Google #GoogleAds #InfoSec #InfoStealer #Malvertising #NET #Nodejs #OTX #OpenThreatExchange #RAT #Russia #SMS #ShellCode #Windows #XLoader #bot #AlienVault

LevelBlue - Open Threat Exchange

Learn about the latest cyber threats. Research, collaborate, and share threat intelligence in real time. Protect yourself and the community against today's emerging threats.

LevelBlue Open Threat Exchange

From package to postinstall payload: Inside the Mastra npm supply chain compromise

Microsoft Threat Intelligence discovered a large-scale npm supply chain attack compromising over 140 packages in the mastra and @mastra scopes. The attack originated from takeover of the ehindero npm maintainer account, which published poisoned package versions introducing easy-day-js, a malicious typosquat of the popular dayjs library. The malicious package executed a postinstall hook that deployed an obfuscated dropper script, disabled TLS certificate verification, contacted command-and-control infrastructure at 23.254.164.92 and 23.254.164.123, and downloaded a second-stage payload. This 41KB cross-platform Node.js implant installed persistence mechanisms, performed cryptocurrency wallet inventory, exfiltrated browser history and host reconnaissance data, and on Windows performed reflective .NET assembly injection for fileless in-memory code execution. Any developer workstation or CI/CD pipeline executing npm install after compromise was potentially exposed regardless of code usage.

Pulse ID: 6a338520dd8f528ed63d76f0
Pulse Link: https://otx.alienvault.com/pulse/6a338520dd8f528ed63d76f0
Pulse Author: AlienVault
Created: 2026-06-18 05:41:52

Be advised, this data is unverified and should be considered preliminary. Always do further verification.

#Browser #CyberSecurity #InfoSec #Microsoft #NET #NPM #Nodejs #OTX #OpenThreatExchange #RAT #SMS #SupplyChain #TLS #Windows #bot #cryptocurrency #AlienVault

LevelBlue - Open Threat Exchange

Learn about the latest cyber threats. Research, collaborate, and share threat intelligence in real time. Protect yourself and the community against today's emerging threats.

LevelBlue Open Threat Exchange

Immer wieder schön, wenn die Mitarbeiter:innen eines Vodafones-Stores [hier: Flagship] sagen, sie schickten jetzt zur Authentifizierung eine SMS. Die kommt nicht an. Und sie erklären dir minutenlang, was du falsch machst.

Problem: Die SAGEN SMS, es ist aber keine. Es ist ein Nachrichtenformat, dass nur mit Google Messenger oder Apples iMessage funktioniert, nicht aber mit SMS-Programmen wie Textra.

#Vodafone #SMS #Texting

SM’s Update On aespa’s Deepfake Videos Trigger Backlash - KpopNewsHub – Latest K-Pop News, Idols & Korean Entertainment

Fans weren’t happy with the verdict.

Kpop News Hub

Hmmm. For SMS and MMS only. Would be nice if all incoming phone calls had this. But of course, the loopholes lobbied-for to get that change through would destroy any effectiveness.

#phone #sms #mms #senderid #australia

Oh, look, it's the US Postal Service texting me from...Morocco? Western Sahara?

Hey, @cloudflare , you're hosting a scammer. (Do you have a number to which we can forward these directly?)

#sms #spam #scam

RCS for Business: The open iMessage alternative for text messaging has a special business product with fancier messages
https://rcsforbusiness.google/
#textmessage #business #imessage #texting #ads #rcs #sms #+
RCS for Business: interaktives, personalisiertes Messaging

Entscheiden Sie sich für RCS for Business von Google. Mit Rich Communication Services (RCS) erhalten Sie dynamische, sichere und personalisierte Unterhaltungen.

RCS Business Messaging