MediaTek has released vital security patches for six significant vulnerabilities affecting various devices using their chipsets, including smartphones and smart displays. The major risk, CVE-2025-20666, allows remote denial of service without user interaction. Other medium-severity vulnerabilities involve inadequate encryption and certificate validation. Users are urged to update their devices promptly to mitigate risks.

Critical Open Source Easyjson Library Under Full Control of Russian Company
Researchers revealed that easyjson, a crucial Go package for JSON serialization, is controlled by Moscow-based developers from VK Group, raising significant security concerns. This foreign