MediaTek has released vital security patches for six significant vulnerabilities affecting various devices using their chipsets, including smartphones and smart displays. The major risk, CVE-2025-20666, allows remote denial of service without user interaction. Other medium-severity vulnerabilities involve inadequate encryption and certificate validation. Users are urged to update their devices promptly to mitigate risks.

“PupkinStealer” A New .NET-Based Malware Steals Browser Credentials & Exfiltrate via Telegram
PupkinStealer is a C# malware that steals sensitive data, including browser credentials and desktop files, using Telegram for stealthy data exfiltration. Discovered in April 2025,