A critical flaw in MongoDB’s Zlib compression component, CVE-2025-14847, allows attackers to expose sensitive data by leaking server memory, posing a major risk to unpatched instances.
Source: Aikido Security
Read more: CyberSecBrief
In case any of you are interested, Z-L*brary is raising funds until October, so if y'all have something to spare, it would be nice if you could send it their way! Also use their services, they’re one of the most prominent organizations advocating constantly for free speech and access to published media out there.
idk if this is happening to anyone else but i thought id ask
i keep trying to use zlibrary to get my textbooks but every time i try to download a file it redirects me to youtube or other stuff that wants me to unblock notifications and a bunch of shit.
basically i keep getting suspicious links that don’t lead where they say they will. zlib has been really reliable in the past so idk what’s going on. has this been a problem for anybody else?
(also for reference i have a chromebook. i don’t know if that’s relevant but i thought id put it out there)
disclaimer: I know next to nothing about these and how they work, these are just my thoughts. if you see an uninformed opinion please point it out in the comments
…for at least a week, libgen has been slipping, rising every so often before collapsing back at its feet; it was reportedly[1][2] down for multiple days and is now apparently back up[1]. but this is kind of unsettling to me because AA and z-lib are unpleasantly graphical and slow;
anna’s archive lacks the resources to have high-speed on-demand downloads, so you have to wait for quite a long time (my wait time was most recently roughly 10 minutes, followed by an extremely slow download) and, annoyingly, large downloads often break midway. that + the slow download time makes it quite frustrating to use sometimes.
z-lib is great… but only 10 times a day (apropos of the matter of getarouds: assume maximalaziness)
no offense to the aforementioned websites, they’re doing great work …the issue is that IRC seems to be superior to these shadow libraries. using a GUI is in itself sort of a huge waste of time for this task. so if you have a computer, it’s a very solid good option. I don’t know its limitations yet…
anyway, it took me like 10 minutes to set up IRC. just downloaded a ~53mb book (with my astonishingly slow network connection) in a couple of minutes, it took two commands (on irchighway #ebooks)
[1] https://www.reddit.com/r/libgen/
[2] “Popular Shadow Library ‘LibGen’ Breaks Down Amidst Legal Troubles,” reports TorrentFreak on 08-14-2024 https://torrentfreak.com/popular-shadow-library-libgen-breaks-down-amidst-legal-troubles-240814/
I love piracy. Both because fuck corporations and monopolies and also because I am broke as hell. Both things can be true. I think in a utopia we should still have piracy of some kind because sleuthing to find something is fun to me. It shouldnt have to be necessary though
Update: the singlelogin domains are down. the wiki page for the library and their reddit has the current links
idk how many people here are aware but i’ve seen some post point people towards the wrong zlibrary domins. z-lib .id, .io, and .to are not zlibrary sites. they pointed out on their telegram that those are scam sites. sadly, they do pop up on google.
the real zlib are only using singlelogin .re and .rs right now

Heads up: zlibrary.se and singlelogin.re are the only legitimate zlibrary domains. Any other domains, especially zlibrary.io and zlibrary.id, are scam sites.
One of them even sent members of the real zlibrary ike me emails repeatedly announcing that “zlibrary” had moved to zlib.id, after which I was asked to re-register. Don’t do it. Check with the Reddit community when in doubt. ☠️ safely!
guys, if you get any emails full of PR-speak telling you to go to z-lib.id (note the dot-i-d ending), that’s a pishing scam. Z-library will not send you any emails unprompted, and they warn against fake domains in the end of every message on their official telegram channel (go through this link if you want to join it, there are fake ones).
ALTAlso, just don’t go on zlib through google, use either the official links, apps¹, or set up a telegram bot to access it.
¹Not downloadable in any app store. You will find the files through the link.
Can you spare a minute to help this campaign?
Z library is too precious, please take a minute to sign this petition to end the criminal prosecution against z lib and take out of jail two people who were arrested before a warrant was even issued.
A few weeks ago I realized Zlib is working again (endind in .es, any other is a scam). Today a friend asked for a book and I opened Zlib and I found they are asking for people to sign a petition to keep Zlib working. So now I’m here asking you kindly to sign this petition.
The FBI is behind the butts of these heroes who allow us access to knowledge, some of them have been under arrest for a year, this is not ok. Please sign the petition and spread the word.
In case you do not know what Zlib is, it is a platform where you can find books and download them for free. The FBI has seized their domain before, we cannot let Zlib succumb, let alone when they are not doing illegal things.