Quoted post says Kimi K3 hit a zero-click command execution flaw in Telegram and iOS
OwariDa · x · 2026-07-23
- A quoted post says Kimi K3 suffered a zero-click arbitrary command execution issue in Telegram Desktop and iOS.
- The quoted note adds that the exploit was ASLR-pinned, with one gadget away from full RCE, underscoring how close it was to full remote code execution.
- The main post only reacts with “Oops,” but the security implication comes from the quoted text.
Related event: Kimi K3 Zero-Click Vulnerability Reported(2 posts)→
More from Safety
- AI education has to move beyond prompts and into context, verification, and judgment — Astrokanu · 2026-07-23
- Post-quantum security starts with knowing where your cryptography lives — moniquejmorrow · 2026-07-23
- Email agents need pre-model defenses because the inbox is the easiest attack surface — kumard3 · 2026-07-23
- Experts Urge NIST to Administer Centralized AI Flaw and Incident Reporting System — evijit · 2026-07-23
- Delaware is trying to get ahead of AI-run companies before they become real — bloomberglaw · 2026-07-23
- Cisco releases Antares, two small models for locating known code vulnerabilities — NielsRogge · 2026-07-23