Kimi K3 Uncovers Near Zero‑Click RCE in Telegram Desktop and iOS, Bypassing ASLR
Security researcher Chaofan Shou revealed that Kimi K3’s AI model discovered a near zero‑click remote code execution flaw in Telegram’s desktop (Windows/macOS/Linux) and iOS clients, bypassing ASLR and requiring only a crafted data packet, with the exploit just one gadget away from full RCE.
