export

AppWizard
June 2, 2025
On May 30, 2025, CERT Polska disclosed three security vulnerabilities affecting preinstalled Android applications on Ulefone and Krüger&Matz smartphones: CVE-2024-13915, CVE-2024-13916, and CVE-2024-13917. - CVE-2024-13915: The com.pri.factorytest application allows any app to invoke the FactoryResetService, enabling unauthorized factory resets due to improper export controls (CWE-926). - CVE-2024-13916: The com.pri.applock application exposes a public method that allows malicious apps to steal the user’s PIN, representing an exposure of sensitive system information (CWE-497). - CVE-2024-13917: The exported activity in com.pri.applock allows privilege escalation by enabling malicious apps to inject intents with system-level privileges if they have access to the compromised PIN (CWE-926). Users of affected devices are advised to seek firmware updates or mitigations from their vendors.
AppWizard
June 2, 2025
Significant vulnerabilities have been identified in pre-installed applications on Ulefone and Krüger&Matz Android smartphones, disclosed on May 30, 2025. Three vulnerabilities affect these devices, including CVE-2024-13915, which targets the com.pri.factorytest application, allowing unauthorized factory resets. CVE-2024-13916 and CVE-2024-13917 affect the com.pri.applock application on Krüger&Matz smartphones, enabling malicious apps to extract user PIN codes and inject arbitrary intents. These vulnerabilities stem from improper export of Android application components, allowing malicious applications to bypass Android’s permission model. Users are advised to check for updates and consider disabling vulnerable applications.
Tech Optimizer
June 2, 2025
Alexey has developed the pgpro-otel-collector, an OpenTelemetry collector by PostgresPro, designed to gather metrics and logs from PostgreSQL databases. It collects PostgreSQL metrics using an internal metrics library, OS-level metrics such as CPU and memory usage, and PostgreSQL logs in CSV and JSON formats. The collector includes internal processors for batch processing and supports exporting to OTLP-compatible backends like Elasticsearch and Prometheus. Installation is straightforward, requiring configuration of the Postgres connection and data destination. The collector can gather a range of PostgreSQL statistics and supports advanced features like CFS and pg_wait_sampling. Future enhancements include support for additional system views, integration with Shardman and BiHA, collection of custom query-based metrics, and a Grafana dashboard. Alexey's background includes experience with various monitoring tools and a focus on PostgreSQL, leading to the creation of this collector.
AppWizard
May 30, 2025
Google Meet will fully replace legacy Duo calling features by September 2025. Users should update the Meet app and save their Duo call history and messages before this date. Some legacy features will be removed, but Google Meet will offer upgraded functionalities such as live captions, in-call chat, stackable effects, cloud encryption, and screen sharing. Users must keep their Meet app updated to ensure a smooth transition; if not all participants are updated, calls will revert to the legacy experience. Users are also encouraged to export their call history and video messages from the Duo app.
AppWizard
May 29, 2025
Habits can influence productivity and well-being, and habit trackers help visualize progress and foster accountability. 1. Loop Habit Tracker is a free, open-source app with a user-friendly interface, habit scores, detailed charts, flexible scheduling, reminders, and offline operation. It is ad-free and available on the Google Play Store. 2. Daylio is a journaling app that integrates habit and mood tracking, allowing users to monitor fitness activities and daily routines. It is free and available on the Google Play Store. 3. Fabulous Daily Routine Planner features an engaging interface with audio and animations, promoting healthy habits and routines. It offers a seven-day free trial, with an annual subscription priced at .99, and is available on the Google Play Store. 4. Clockify is primarily a time tracker that also provides habit tracking capabilities, allowing users to generate reports and integrate with Google Calendar. It is free and available on the Google Play Store, with a desktop version. 5. Habitify allows users to input habits, plan routines, set reminders, and visualize progress. It emphasizes consistency and offers a free version with limitations and an in-app subscription priced at .99 per month for unlimited features. It is available on the Google Play Store.
Search