#0click
La truffa dei bonifici richiesti ai proprio contatti #Whatsapp tramite #0click su #iOS16 pare essere solo la punta dell'iceberg.
Via, Paolo Dal Checco (@forensico, su 𝕏).
September 27, 2026 at 10:21 AM
As I understand this: show up with a 0click in a messaging app, cool. Show up with a break in Signal’s PQC implementation, that gets fixed.

It’s actually excellent policy. But allegedly new policy.
November 15, 2025 at 6:07 PM
I have talked to an IT admin turned security Principal, who had a 0click 0day deployed on their network. I know the case and CVE, it is real.

What saved them was the attacker encountering a configuration they had just NO idea what to do with.

Attackers are not gods, even if they have the commands.
I tell the story often but in the beginnings of my career in IT I was fascinated by stories of 0days by state actors. And I worried about them.

As our entire client base was XP SP2 with zero governance and many machines shared huge groups of local admins.

Perspective later is hell of a thing.
November 19, 2025 at 5:41 AM
We're currently hiring experienced researchers, particularly focusing on the areas of iOS, Android, Browser, and 0click. If you're interested, please reach out: <contact@catalystsecurity.com>
April 22, 2025 at 6:19 PM
0click deanonymization attack targeting Signal, Discord and other platforms [Discussion]
0click deanonymization attack targeting Signal, Discord and other platforms
0click deanonymization attack targeting Signal, Discord and other platforms
gist.github.com
January 21, 2025 at 4:25 PM
Hacked in Pakistan: Israeli spyware firm Intellexa still active amid U.S. sanctions. New victims of Predator spyware identified, with secretive 0click Ad-based infections.
Bombshell expose by Omer Benjakob, Eliza Triantafillou, Lorenz Naegeli, Donncha Ó Cearbhaill
www.haaretz.com/israel-news/...
Israeli Spyware firm Intellexa, owned by ex-intel officer, still active amid US sanctions
New Victims of Predator Spyware Identified, With Malicious TikTok Links Revealing New Targets, and Evidence Shows Egypt and Saudi Clients Still Active. Ad-based Infections Confirmed. Leaked Files and ...
www.haaretz.com
December 4, 2025 at 8:32 AM
“ #ShadowPrompt” : désormais comblée, retour sur la vulnérabilité #0click qui impactait l'extension #Claude pour Google #Chrome !

blog.sosordi.net/2026/03/shad...

#securite #data #vieprivee #Internet #miseAjour #ArkoseLabs #IA
March 31, 2026 at 2:06 PM
ChatGPT Connectors 0click Attack labs.zenity.io/p/agentflaye... that's why I don't like the idea of connecting any of my services to any of my other services. Convenience has costs.
August 11, 2025 at 2:25 PM
Zenity's CTO told Cursor it was playing a treasure hunt and asked it to find 'apples' shaped like secrets. it worked, full RCE. also hijacked ChatGPT with just an email, stole Google Drive data without a click https://zenity.io/research/agentflayer-vulnerabilities
AI Agent Security | AgentFlayer: The 0Click Threat to AI Assistants &amp; Agents | Zenity
Zenity empowers enterprises to enable AI Agents securely. Our platform ensures adaptive security and governance from buildtime to runtime.
zenity.io
March 29, 2026 at 4:19 AM
August 23, 2025
August 23, 2025
August 23, 2025 Brief info and POC for this week's Apple 0click iOS 18.6.1 RCE bug CVE-2025-43300 https://t.co/EL3qg56N8X pic.twitter.com/j8yuv1CXU7—...
buttondown.com
August 23, 2025 at 1:43 PM
join us tmrw! its going to be .. well .. we've got something for everybody!

blackhat[.]com/us-25/briefings/schedule/index.html#ai-enterprise-compromise---0click-exploit-methods-46442
August 5, 2025 at 7:02 PM
0click deanonymization attack targeting Signal, Discord and other platforms
Unique 0-click deanonymization attack targeting Signal, Discord and hundreds of platform
Unique 0-click deanonymization attack targeting Signal, Discord and hundreds of platform - research.md
gist.github.com
January 21, 2025 at 3:50 PM
0click deanonymization attack targeting Signal, Discord and other platforms Discussion
Unique 0-click deanonymization attack targeting Signal, Discord and hundreds of platform
Unique 0-click deanonymization attack targeting Signal, Discord and hundreds of platform - research.md
gist.github.com
January 21, 2025 at 3:20 PM
Good questions. I'm not aware of any active 0click on a major blockchain.

But it's within the realm of speculatively possible, assuming work, on various blockchains / smart contracts.

Also speculative re BTC: maybe via leveraging vulnerabilities in systems/libraries that parse OP RETURN etc..
October 19, 2025 at 11:40 AM
2006-born person with a “neocities”: I miss macromedia flash :(

1980-born person who still drives a 1993 accord and bought a house in 2009 with a suitcase of cash earned by selling 0click flash 0days to bidders who then distributed them through ad networks: me too friend, me too :(
October 12, 2025 at 2:53 PM
Check out the latest #NextNW blog post:
Zero-Click Marketing: An Exclusive Interview with Rand Fishkin of @sparktoro
ow.ly/O33c50UUyh0
#zeroclick #0click #digitalmarketing #attribution
Zero-Click Marketing: An Exclusive Interview with Rand Fishkin of SparkToro - NextNW
Ahead of his upcoming February 25th webinar, digital marketing maverick Rand Fishkin sits down with NextNW to unpack the transformative world of zero-click marketing
ow.ly
February 6, 2025 at 2:03 AM
How to transform your customer services processes with AI - by using MCP to let anyone inject prompts into your ticketing system:
labs.zenity.io/p/when-a-jir...
August 4, 2025 at 7:32 PM
0click chain on a copilot studio agent via email
bypass msft's defense, jailbreak 4o, recon for accessible data, dump the entire salesforce crm
one prompt
labs.zenity.io/p/a-copilot-...
A Copilot Studio Story 2: When AIjacking Leads to Full Data Exfiltration
Discover how prompt injections can lead to zero-click exploits threatening AI agents built using Copilot Studio. Learn about real-world risks, including data leakage and security blind spots. Bypass C...
labs.zenity.io
July 18, 2025 at 9:06 PM
Výzkumníci tvrdí, že použili AI k vytvoření 0click červa, který může hacknout účty WeChat a šířit se napříč iOS a Androidem. www.nytimes.com/2026...
September 8, 2026 at 11:23 AM
Is using it to be a perfect centrist the use case though? When I’ve used it its been to comapare Canadian reporting with American or to see what “the Right” is reporting on that I haven’t seen anything about yet because I don’t want to actually follow them. (GN probs has 0click ad-leech issues tho)
August 13, 2026 at 11:09 PM