R3X
قناة متخصصة في الأمن السيبراني والبرمجة نقدم لك: 🧠 شروحات في الاختراق الأخلاقي وأمن المعلومات 📚 دورات وكتب باللغة العربية والإنجليزية 💡 محتوى تعليمي مبسط للمبتداء والمتقدم. Admin: @m_r_o_o للاعلان https://telega.io/c/m_r_o_o2
Show more📈 Analytical overview of Telegram channel R3X
Channel R3X (@m_r_o_o2) in the Arabic language segment is an active participant. Currently, the community unites 12 740 subscribers, ranking 9 623 in the Technologies & Applications category and 9 291 in the Iraq region.
📊 Audience metrics and dynamics
Since its creation on невідомо, the project has demonstrated rapid growth, gathering an audience of 12 740 subscribers.
According to the latest data from 07 September, 2026, the channel demonstrates stable activity. Although there has been a change in the number of participants by -362 over the last 30 days and by -15 over the last 24 hours, overall reach remains high.
- Verification status: Not verified
- Engagement rate (ER): The average audience engagement rate is 3.26%. Within the first 24 hours after publication, content typically collects 1.18% reactions from the total number of subscribers.
- Post reach: On average, each post receives 415 views. Within the first day, a publication typically gains 150 views.
- Reactions and interaction: The audience actively supports content: the average number of reactions per post is 2.
- Thematic interests: Content is focused on key topics such as بَيَان, أَمن, نِظَام, تَقنِيَّة, طَلَب.
📝 Description and content policy
The author describes the resource as a platform for expressing subjective opinions:
“قناة متخصصة في الأمن السيبراني والبرمجة
نقدم لك:
🧠 شروحات في الاختراق الأخلاقي وأمن المعلومات
📚 دورات وكتب باللغة العربية والإنجليزية
💡 محتوى تعليمي مبسط للمبتداء والمتقدم.
Admin: @m_r_o_o
للاعلان
https://telega.io/c/m_r_o_o2”
Thanks to the high frequency of updates (latest data received on 08 September, 2026), the channel maintains relevance and a high level of publication reach. Analytics show that the audience actively interacts with content, making it an important point of influence in the Technologies & Applications category.
يتم توجيه الضحية إلى صفحة التفويض الرسمية وبعد الضغط على Accept يصدر Access Token ويُرسل إلى Redirect URI الخاص بتطبيق المهاجم دون الحاجة لسرقة كلمة المرور.علامات الاشتباه:
Scope: Mail.ReadWrite Scope: Files.ReadWrite.All-ConsentFix
يستخدم المهاجم أسلوب ClickFix والهندسة الاجتماعية لخداع الضحية لإكمال تدفق التفويض بطرق مضللة حيث يعتمد الخطر بشكل أساسي على موافقة المستخدم على صلاحيات غير آمنة وليس على تنفيذ أوامر برمجية معقدة.قد تظهر عمليات التفويض لتطبيقات مثل:
App: Azure CLI App: Microsoft PowerShellرموز OAuth -Access Token: للوصول إلى واجهات APIs. -Refresh Token: يُستخدم لتجديد Access Token، وتحدد صلاحيته سياسات مزود الهوية، وقد يُلغى عند تغيير كلمة المرور أو اكتشاف نشاط مشبوه. أنواع الأذونات: -User Delegated:
يعمل بصلاحيات المستخدم ويصل إلى الموارد المسموح له بالوصول إليها فقط.-Application:
يعمل بصلاحيات التطبيق للوصول إلى الموارد التي وافق عليها مسؤول النظام دون الحاجة لوجود مستخدم نشط.أساليب مرتبطة بالهجوم -Indirect Prompt Injection
استغلال وكلاء الذكاء الاصطناعي عبر إخفاء أوامر داخل بريد أو مستند، فينفذها الوكيل إذا كان يمتلك الصلاحيات اللازمة.-Device Code Flow Phishing
يُولد المهاجم Device Code رسميا ويقنع الضحية بإدخاله في صفحة تسجيل الدخول، فتُصدر رموز OAuth المرتبطة بجلسة المهاجم.-MFA Fatigue
يعتمد على امتلاك بيانات الاعتماد مسبقًا، ثم إغراق الضحية بطلبات موافقة متكررة حتى يوافق عليها بالخطأ.-Session Cookie Hijacking
لا يستهدف OAuth مباشرة بل يسرق Session Cookies من المتصفح وإذا كانت الجلسة لا تزال صالحة فقد يتمكن المهاجم من الوصول للحساب دون إعادة تسجيل الدخول وقد يتجاوز MFA لتلك الجلسة.©️ @m_r_o_o
