π‘ Cybersecurity & Privacy π‘ - News
π The finest daily news on cybersecurity and privacy. π Daily releases. π» Is your online life secure? π© lalilolalo.dev@gmail.com
Show moreπ Analytical overview of Telegram channel π‘ Cybersecurity & Privacy π‘ - News
Channel π‘ Cybersecurity & Privacy π‘ - News (@cibsecurity) in the English language segment is an active participant. Currently, the community unites 28 498 subscribers, ranking 4 576 in the Technologies & Applications category and 1 401 in the USA region.
π Audience metrics and dynamics
Since its creation on Π½Π΅Π²ΡΠ΄ΠΎΠΌΠΎ, the project has demonstrated rapid growth, gathering an audience of 28 498 subscribers.
According to the latest data from 06 October, 2026, the channel demonstrates stable activity. Although there has been a change in the number of participants by 610 over the last 30 days and by 19 over the last 24 hours, overall reach remains high.
- Verification status: Not verified
- Engagement rate (ER): The average audience engagement rate is 1.03%. Within the first 24 hours after publication, content typically collects 0.72% reactions from the total number of subscribers.
- Post reach: On average, each post receives 294 views. Within the first day, a publication typically gains 205 views.
- Reactions and interaction: The audience actively supports content: the average number of reactions per post is 1.
- Thematic interests: Content is focused on key topics such as infosecurity, hacker, attack, cybersecurity, threat.
π Description and content policy
The author describes the resource as a platform for expressing subjective opinions:
βπ The finest daily news on cybersecurity and privacy.
π Daily releases.
π» Is your online life secure?
π© lalilolalo.dev@gmail.comβ
Thanks to the high frequency of updates (latest data received on 07 October, 2026), the channel maintains relevance and a high level of publication reach. Analytics show that the audience actively interacts with content, making it an important point of influence in the Technologies & Applications category.
Data loading in progress...
| Date | Subscriber Growth | Mentions | Channels | |
| 07 October | +7 | |||
| 06 October | +19 | |||
| 05 October | +33 | |||
| 04 October | +13 | |||
| 03 October | +13 | |||
| 02 October | +18 | |||
| 01 October | +24 |
Attackers compromised three countrycode toplevel domains ccTLDs and obtained unauthorized HTTPS certificates for several Google domains, Google said on October 6. Google's own systems were not breached, but any domain ending in .gh Ghana, .sl Sierra Leone or .as American Samoa was put at risk. With such a certificate, an attacker could pose as the real site over an encrypted.
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity| 2 | ποΈ SonicWall Patches CVSS 10.0 Pre-Authentication SSRF Flaw in SMA1000 Appliances ποΈ
SonicWall has released hotfixes for four flaws in its SMA1000 appliances, the gateways that give remote workers access to a company's network and applications. The most serious could allow an attacker without a login to send requests through the appliance and reach internal functions. SonicWall rates it 10.0 on the CVSS scale and says it has no evidence that any of the four flaws is being.
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity | 88 |
| 3 | ποΈ Eight Malicious npm Packages Downloaded 40,767 Times Deliver Overlord RAT and Stealer ποΈ
Cybersecurity researchers have disclosed details of a longrunning npm supply chain malware campaign that pushes information stealers and remote access trojans RAT to compromised hosts. The campaign has been codenamed MALFEX by CloudSEK and Checkmarx. The activity is assessed to be the work of a lone threat actor who appears to have published 12 packages since August 2023, eight of which have.
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity | 75 |
| 4 | ποΈ PoeLLM Malware Infects 3,400+ Servers to Expand Crypto Mining Botnet ποΈ
Cybersecurity researchers are calling attention to a new malware family that has been observed targeting exposed artificial intelligence AI and large language model LLM infrastructure with an aim to deploy cryptocurrency miners and further expand the scale of the botnet. The financially motivated campaign, dubbed Canto Incognito, has been found to install cryptocurrency miners, including.
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity | 167 |
| 5 | ποΈ Unpatched Critical LMCache Flaw Lets Unauthenticated Attackers Run Code Remotely ποΈ
A critical vulnerability in LMCache, opensource software that speeds up large language model LLM servers such as vLLM, lets an attacker run code on the cache server without logging in, and no fixed version is available. The flaw is in LMCache'sΒ multiprocess mode, where the cache runs as a standalone server that LLM workers reach over the ZeroMQ messaging library. A single network.
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity | 158 |
| 6 | π Danish CPR Breach Highlights Challenge of Supply Chain Risk π
A breach of 8.8 million citizens on the Danish Central Register of Persons CPR occurred via thirdparty access.
π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity | 187 |
| 7 | π Pwn2Own Hackers Find 32 Zero-Day Vulnerabilities on Day One π
Ethical hackers have already found 32 zero days in various products at Pwn2Own Ireland.
π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity | 166 |
| 8 | π Half of Cybersecurity Pros Still Rely on Passwords Despite Security Concerns π
A Yubico survey identified a significant gap between awareness and adoption of secure methods of authentication in enterprises.
π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity | 131 |
| 9 | π Telegram Account Behind ASOS Rogue Notification Tied to Gaming Trading π
A GroupIB researcher has found the Telegram account linked to the unauthorized ASOS customer notification previously engaged in gamingitem trading.
π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity | 88 |
| 10 | π Attackers Hide AI Prompt Injections Inside Phishing Emails π
Barracuda finds phishing emails designed to manipulate both human users and AI assistants.
π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity | 75 |
| 11 | π OT Coalition Urges CISA to Mandate Federal OT Security π
OTCC urged CISA to mandate baseline security requirements for federal operational technology.
π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity | 69 |
| 12 | π The quest for simplicity: Why SMBs want advanced protection without the complexity π
The cybersecurity market is often making it tougher for SMBs to keep threats at bay.
π Read more.
π Via "ESET - WeLiveSecurity"
----------
ποΈ Seen on @cibsecurity | 63 |
| 13 | ποΈ 100+ Compromised Websites Use Fake Cloudflare Checks to Deliver LunexStealer ποΈ
The Computer Emergency Response Team of Ukraine CERTUA has identified more than 100 compromised websites that have been injected with malicious JavaScript to serve an informationstealing malware called LunexStealer aka Psychedelic Stealer. The activity, which was observed by the agency in September 2026, has been attributed to a threat cluster dubbed UAC0277. It did not disclose who the.
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity | 60 |
| 14 | ποΈ Anthropic Expands Claude Access for Vetted Cyber Teams as Glasswing Finds 129,000 Flaws ποΈ
Anthropic on Tuesday said it's expanding a program that allows vetted cybersecurity professionals to test its advanced artificial intelligence AI models with reduced safeguards and blocking classifiers, as the company claimed its Project Glasswing initiative uncovered at least 129,000 verified software vulnerabilities between April and July 2026. The company said it also found an additional.
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity | 60 |
| 15 | ποΈ What Is Agentic Pentesting? What It Proves, and Where It Stops. ποΈ
If youre evaluating an agentic pentesting solution right now, youve probably heard the same pitch more than once point it at a target, and it discovers, validates, and exploits attack paths autonomously, the way a real attacker would. That promise is worth taking seriously. Its also worth pressure testing, and three questions do the heavy lifting.Β What can the assessment actually.
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity | 68 |
| 16 | ποΈ Atlassian Data Center Flaw Draws Exploitation Attempts Within Two Hours of Public Details ποΈ
Threat actors have begun to exploit a newly disclosed critical security flaw impacting Atlassian Data Center products that could allow access to sensitive files under certain conditions. The arbitrary file access flaw, tracked as CVE202621589 CVSS score 9.3 affects multiple products, including Bitbucket Data Center, Confluence Data Center, Jira Service Management Data Center, Jira Software.
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity | 67 |
| 17 | ποΈ FBI Warns FortiBleed Remains Active After Amassing 86,644 Fortinet Device Credentials ποΈ
The U.S. Federal Bureau of Investigation FBI and Secret Service USSS on Tuesday warned that the FortiBleed credential harvesting campaign remains an active threat aimed at internetfacing Fortinet FortiGate firewalls and secure socket layer SSL virtual private network VPN gateways. "The campaign exploits reused or leaked credentials and legacy SHA256 password storage, enabling threat.
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity | 74 |
| 18 | ποΈ The Sixth Voice of the CISO Data Shows Cyber Risk Has Moved Inside the Workflow ποΈ
The 2026 findings are not just a yearoveryear shift. They mark the latest point in a fiveyear arc where resilience, AI governance, human risk, and board scrutiny are converging inside the systems where work actually happens. For years, the enterprise cybersecurity story has been told as a straight line of escalation more attacks, more data loss, more pressure, and more urgency. That.
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity | 74 |
| 19 | βοΈ ShinyHunters Extorted Boeing Spin-off Prior to Arrests βοΈ
A teenager from Amman, Jordan suspected of leading the prolific data theft and extortion group ShinyHunters has been detained and is reportedly cooperating with the FBI to identify other members of the hacking gang. KrebsOnSecurity has learned that the suspect, who uses the hacker handle "Rey," was detained as ShinyHunters was in the process of extorting a business unit recently divested by the global aerospace company Boeing, which manufactures the fleet of planes used by the employer of Rey's father Royal Jordanian Airlines.
π Read more.
π Via "Krebs on Security"
----------
ποΈ Seen on @cibsecurity | 100 |
| 20 | π’ Accenture contractor removed over blunder in lead up to FBI breach π’
The contractor is believed to have failed to apply a security patch that would have secured Oracle PeopleSoft.
π Read more.
π Via "ITPro"
----------
ποΈ Seen on @cibsecurity | 122 |
