The Hacker News
⭐ Official THN Telegram Channel — A trusted, widely read, independent source for breaking news and tech coverage about cybersecurity and hacking. 📨 Contact: admin@thehackernews.com 🌐 Website: https://thehackernews.com
نمایش بیشتر📈 تحلیل کانال تلگرام The Hacker News
کانال The Hacker News (@thehackernews) در بخش زبانی انگلیسی بازیگری فعال است. در حال حاضر جامعه شامل 162 254 مشترک است و جایگاه 646 را در دسته فناوری و برنامهها و رتبه 107 را در منطقه الولايات المتحدة الأمريكية دارد.
📊 شاخصهای مخاطب و پویایی
از زمان ایجاد در невідомо، پروژه رشد سریعی داشته و 162 254 مشترک جذب کرده است.
بر اساس آخرین دادهها در تاریخ 14 سپتامبر, 2026، کانال فعالیت پایداری دارد. در ۳۰ روز گذشته تغییر اعضا برابر 189 و در ۲۴ ساعت گذشته برابر -46 بوده و همچنان دسترسی گستردهای حفظ شده است.
- وضعیت تأیید: تأیید شده (به صورت رسمی توسط تلگرام)
- نرخ تعامل (ER): میانگین تعامل مخاطب 4.61% است و در ۲۴ ساعت نخست پس از انتشار، محتوا معمولاً 2.98% واکنش نسبت به کل مشترکان کسب میکند.
- دسترسی پستها: هر پست به طور میانگین 7 475 بازدید دریافت میکند. در اولین روز معمولاً 4 832 بازدید جمعآوری میشود.
- واکنشها و تعامل: مخاطبان بهطور فعال حمایت میکنند؛ میانگین واکنش به هر پست 12 است.
- علایق موضوعی: محتوا بر موضوعات کلیدی مانند attack, credential, cve-2026, github, backdoor تمرکز دارد.
📝 توضیح و سیاست محتوایی
نویسنده این فضا را محل بیان دیدگاههای شخصی توصیف میکند:
“⭐ Official THN Telegram Channel — A trusted, widely read, independent source for breaking news and tech coverage about cybersecurity and hacking.
📨 Contact: admin@thehackernews.com
🌐 Website: https://thehackernews.com”
به لطف بهروزرسانیهای پرتکرار (آخرین داده در تاریخ 15 سپتامبر, 2026)، کانال همواره بهروز و دارای دسترسی بالاست. تحلیلها نشان میدهد مخاطبان بهطور فعال با محتوا تعامل دارند و آن را به نقطه اثرگذاری مهم در دسته فناوری و برنامهها تبدیل کردهاند.
در حال بارگیری داده...
| تاریخ | رشد مشترکین | اشارات | کانالها | |
| 15 سپتامبر | +26 | |||
| 14 سپتامبر | +23 | |||
| 13 سپتامبر | +29 | |||
| 12 سپتامبر | +23 | |||
| 11 سپتامبر | +32 | |||
| 10 سپتامبر | +54 | |||
| 09 سپتامبر | +25 | |||
| 08 سپتامبر | +61 | |||
| 07 سپتامبر | +25 | |||
| 06 سپتامبر | +53 | |||
| 05 سپتامبر | +45 | |||
| 04 سپتامبر | +41 | |||
| 03 سپتامبر | +37 | |||
| 02 سپتامبر | +34 | |||
| 01 سپتامبر | +22 |
| 2 | ‼️ Iran-attributed HEAVYGRAM, also tracked as CHOSEN BRICK, uses Telegram bots to spy on dissidents and journalists.
A joint U.S.-U.K.-Dutch advisory says the Windows malware can steal messages and passwords, record audio, capture screenshots, and exfiltrate files.
Details → https://thehackernews.com/2026/09/iranian-hackers-use-telegram-controlled.html | 2 967 |
| 3 | 🚨 BambooToken uses MQTT to control Windows and Linux hosts across Asia and South America.
Lumen identified a dozen compromised entities, with activity detected as recently as July 2026.
Learn what's inside the malware’s MQTT command-and-control: https://thehackernews.com/2026/09/bambootoken-malware-uses-mqtt-to.html | 3 243 |
| 4 | ✅ Your Business Continuity Management Checklist.
Most resilience programs look complete on paper. Let's make sure yours holds up when it matters most.
Discover 6 ways to align your BCM program with operational reality.
Get the checklist → https://thn.news/bcm-reality-check | 3 756 |
| 5 | Phishing puts financial SOCs under constant pressure. Cut the workload with ANY.RUN: faster analysis, fewer escalations, and 21 min lower MTTR.
→ https://thn.news/phishing-soc-detection | 3 882 |
| 6 | 🚨 A human attacker exploited Marimo’s pre-auth RCE and reached an SSH bastion in eight seconds.
The operator used harvested AWS credentials to fetch the private key from Secrets Manager and authenticate over SSH. No AI agent was involved.
Read: https://thehackernews.com/2026/09/human-attacker-exploits-marimo-rce.html | 3 412 |
| 7 | One attack step can now decide what gets tested next.
OpenAEV’s Attack Chaining feeds live findings like credentials, tokens, and open ports into the next stage, while XTM One can plan and adapt the path inside a defined scope.
How the attack path builds: https://thehackernews.com/2026/09/attack-chains-not-just-attack-surfaces.html | 3 330 |
| 8 | ⚠️ Exposed Vite dev servers are being scanned for cloud credentials.
Attackers are exploiting a Vite flaw to bypass file restrictions and retrieve .env files, AWS and Azure credentials, and infrastructure state.
How the bypass works: https://thehackernews.com/2026/09/mass-scanning-campaign-exploits-vite.html | 3 506 |
| 9 | Cursor deleted a production database and its backups in nine seconds.
The agent found an unrelated Railway API token with blanket GraphQL permissions while handling a staging task. AI blast radius follows credential reach.
Why access boundaries matter: https://thehackernews.com/expert-insights/2026/09/stop-trying-to-control-ai-behavior.html | 4 786 |
| 10 | ‼️ Warning: LiteSpeed Enterprise before 6.3.7 can let low-privilege website users gain root on shared-hosting servers.
It can bypass CageFS isolation. No CVE is assigned, exploitation is unknown, and 6.3.7 may not auto-update immediately.
Manual update may be required → https://thehackernews.com/2026/09/litespeed-enterprise-flaw-could-let-one.html | 4 378 |
| 11 | ‼️ Attackers are exploiting a Cisco Secure Email Gateway vulnerability that can let a crafted email trigger command execution as root.
Cisco has released fixes, and CISA added CVE-2026-76461 to its KEV catalog.
How the attack works → https://thehackernews.com/2026/09/cisco-secure-email-gateway-flaw.html | 4 474 |
| 12 | ⚠️ Two China-linked threat actors exploited the same Chrome-Windows zero-day chain.
UTA0560 used it to deploy the GRIMWEDGE backdoor against NGOs. APT31 used it to install LONGTALE, a credential-stealing Chrome extension.
How the shared exploit chain worked: https://thehackernews.com/2026/09/china-linked-hackers-exploit-chrome.html | 4 538 |
| 13 | 🚨 Thai ISP 3BB attacker had root access and hid MeshCentral for persistence.
Recovered tools sprayed passwords across 55+ internal systems and targeted subscriber login databases.
How the attacker stayed in: https://thehackernews.com/2026/09/3bb-attacker-used-meshcentral-backdoor.html | 5 543 |
| 14 | ‼️ A Telegram Desktop flaw could send messages from opened HTML exports to an attacker-controlled server.
A bot message could hide JavaScript in pre-fix exports, which ran when the file was opened in a browser with JavaScript enabled.
Updating Telegram does not clean old export files.
Read: https://thehackernews.com/2026/09/telegram-desktop-flaw-lets-hidden.html | 5 353 |
| 15 | ‼️ Researchers broke Intel TDX’s confidential-computing protections with a $159 DDR5 interposer.
New "DDRop" attack silently drops memory writes so the CPU trusts stale encrypted data. In lab tests, researchers read protected VM memory and forged attestation.
No CVE. No patch. Full details here → https://thehackernews.com/2026/09/new-ddrop-attack-breaks-intel-tdx-and.html | 4 801 |
| 16 | ‼️ Researchers broke Intel TDX’s confidential-computing protections with a $159 DDR5 interposer.
New "DDRop" attack silently drops memory writes so the CPU trusts stale encrypted data. In lab tests, researchers read protected VM memory and forged attestation.
No CVE. No patch. Full details here → https://thehackernews.com/2026/09/new-ddrop-attack-breaks-intel-tdx-and.html | 1 |
| 17 | 🚨 Red Heron exploited a Gitea RCE to compromise 13 organizations across six countries.
The actor automated a public exploit, stole repositories and credentials, and in one Taiwanese environment reached root on a three-node Proxmox cluster.
How the campaign escalated: https://thehackernews.com/2026/09/red-heron-exploits-gitea-rce-to.html | 4 522 |
| 18 | The EU CRA requires formal documentation built during the product lifecycle.
The EU CRA's December 2027 deadline requires a governed open source inventory, current SBOM coverage, and an audit trail for every remediation decision. You can't build that once a vulnerability is found. Non-compliance risks your EU market access. See what's required, and start now.
Start here → https://thn.news/cra-readiness-eu | 4 514 |
| 19 | 🔥 WordPress is adding a new security gate to every plugin release.
Before distribution, each release will be reviewed with AI models and Jetpack Scan, and high-risk updates will be blocked automatically. The system recently caught a backdoored release before it reached the WordPress-org update API.
How the new review works: https://thehackernews.com/2026/09/wordpress-adds-automated-plugin-reviews.html | 4 555 |
| 20 | ⚡ THIS WEEK IN CYBER
AI agents went off-script.
A zero-click worm surfaced.
Exploit chains got shorter.
Old bugs kept paying off.
Rootkits stayed quiet.
Scam infrastructure took a hit.
Also inside:
→ AI-powered espionage
→ PaperCut exploitation
→ phishing through trusted infrastructure
→ fresh 0-days and patch bypasses
→ exposed systems attackers are already probing
The pattern this week is simple: attacks are getting faster, but many of the doors are still painfully ordinary.
Full recap ↓ https://thehackernews.com/2026/09/weekly-recap-rogue-ai-agents-wechat.html | 5 030 |
