fa
Feedback
The Hacker News

The Hacker News

رفتن به کانال در Telegram

⭐ Official THN Telegram Channel — A trusted, widely read, independent source for breaking news and tech coverage about cybersecurity and hacking. 📨 Contact: admin@thehackernews.com 🌐 Website: https://thehackernews.com

نمایش بیشتر

📈 تحلیل کانال تلگرام The Hacker News

کانال The Hacker News (@thehackernews) در بخش زبانی انگلیسی بازیگری فعال است. در حال حاضر جامعه شامل 164 717 مشترک است و جایگاه 642 را در دسته فناوری و برنامه‌ها و رتبه 101 را در منطقه الولايات المتحدة الأمريكية دارد.

📊 شاخص‌های مخاطب و پویایی

از زمان ایجاد در невідомо، پروژه رشد سریعی داشته و 164 717 مشترک جذب کرده است.

بر اساس آخرین داده‌ها در تاریخ 17 سپتامبر, 2026، کانال فعالیت پایداری دارد. در ۳۰ روز گذشته تغییر اعضا برابر 2 631 و در ۲۴ ساعت گذشته برابر -92 بوده و همچنان دسترسی گسترده‌ای حفظ شده است.

  • وضعیت تأیید: تأیید شده (به صورت رسمی توسط تلگرام)
  • نرخ تعامل (ER): میانگین تعامل مخاطب 4.39% است و در ۲۴ ساعت نخست پس از انتشار، محتوا معمولاً 2.92% واکنش نسبت به کل مشترکان کسب می‌کند.
  • دسترسی پست‌ها: هر پست به طور میانگین 7 223 بازدید دریافت می‌کند. در اولین روز معمولاً 4 810 بازدید جمع‌آوری می‌شود.
  • واکنش‌ها و تعامل: مخاطبان به‌طور فعال حمایت می‌کنند؛ میانگین واکنش به هر پست 10 است.
  • علایق موضوعی: محتوا بر موضوعات کلیدی مانند attack, credential, cve-2026, github, backdoor تمرکز دارد.

📝 توضیح و سیاست محتوایی

نویسنده این فضا را محل بیان دیدگاه‌های شخصی توصیف می‌کند:
⭐ Official THN Telegram Channel — A trusted, widely read, independent source for breaking news and tech coverage about cybersecurity and hacking. 📨 Contact: admin@thehackernews.com 🌐 Website: https://thehackernews.com

به لطف به‌روزرسانی‌های پرتکرار (آخرین داده در تاریخ 18 سپتامبر, 2026)، کانال همواره به‌روز و دارای دسترسی بالاست. تحلیل‌ها نشان می‌دهد مخاطبان به‌طور فعال با محتوا تعامل دارند و آن را به نقطه اثرگذاری مهم در دسته فناوری و برنامه‌ها تبدیل کرده‌اند.

164 717
مشترکین
-9224 ساعت
+2 3797 روز
+2 63130 روز
آرشیو پست ها
‼️ A browser extension could hijack AI agents in Comet, Edge, Opera Neon and Claude, while abusing Chrome’s Gemini integratio
‼️ A browser extension could hijack AI agents in Comet, Edge, Opera Neon and Claude, while abusing Chrome’s Gemini integration to reach local files, the camera and mic. Researchers used the same underlying trust-boundary weakness across all five products after the extension was already installed. Here's the technique → https://thehackernews.com/2026/09/one-extension-could-hijack-ai.html

⚠️ One hijacked AI coding session helped spread Shai-Hulud across about 100 internal repositories. A poisoned PyPI package in
⚠️ One hijacked AI coding session helped spread Shai-Hulud across about 100 internal repositories. A poisoned PyPI package installed an infostealer, GitHub OAuth tokens were stolen, and a compromised package in the company’s own namespace caused a second infection. Read: https://thehackernews.com/2026/09/attacker-hijacks-ai-coding-assistant.html

⚠️ N0va phishing abuses legitimate sign-in flows to capture access and refresh tokens. The campaign impersonates Teams, Share
⚠️ N0va phishing abuses legitimate sign-in flows to capture access and refresh tokens. The campaign impersonates Teams, SharePoint, DocuSign, Google Drive, and other trusted services, then can establish SSO access to email, files, and cloud apps. Inside the attack chain → https://thehackernews.com/2026/09/n0va-phishkit-targets-us-and-eu.html

🛑 A Parallels Desktop flaw lets non-admin Mac users gain root, but Intel Macs can’t install the version containing the fix.
🛑 A Parallels Desktop flaw lets non-admin Mac users gain root, but Intel Macs can’t install the version containing the fix. Tracked as CVE-2026-90894, JFrog demonstrated the flaw on Parallels Desktop 26.4.0 and reports no attacks. How the root escalation works → https://thehackernews.com/2026/09/parallels-desktop-flaw-lets-non-admin.html

A leaked credential is only useful intelligence if you know it still works. Pentera’s Recorded Future integration automatical
A leaked credential is only useful intelligence if you know it still works. Pentera’s Recorded Future integration automatically tests exposed credentials against an organization’s external attack surface to confirm which ones can actually be used. How the validation works → https://thehackernews.com/2026/09/threat-intelligence-alone-wont-close.html

‼️ ALERT - Google says a Pixel modem flaw may be under limited, targeted exploitation. CVE-2026-58704 can enable adjacent pri
‼️ ALERT - Google says a Pixel modem flaw may be under limited, targeted exploitation. CVE-2026-58704 can enable adjacent privilege escalation without user interaction. Google patched it in the September Pixel update. What’s known about the attacks → https://thehackernews.com/2026/09/google-patches-pixel-modem-flaw-amid.html

⚠️ Acronis Backup flaw exploited in limited targeted attacks. CVE-2026-87886 lets a low-privileged attacker escalate permissi
⚠️ Acronis Backup flaw exploited in limited targeted attacks. CVE-2026-87886 lets a low-privileged attacker escalate permissions on affected Linux cPanel/WHM and Plesk deployments. Fixes are available. Which builds need updating → https://thehackernews.com/2026/09/acronis-cpanel-backup-plugin.html

A unified security dashboard can still hide a broken incident workflow. Run one incident from detection to clean recovery. Co
A unified security dashboard can still hide a broken incident workflow. Run one incident from detection to clean recovery. Count every console switch, permission change, and ownership handoff. Six tests reveal whether consolidation actually reduces operational friction: https://thehackernews.com/expert-insights/2026/09/how-to-evaluate-unified-security.html

🚨 Attackers are exploiting a critical WooCommerce Wholesale Lead Capture flaw to plant PHP web shells. Wordfence has blocked
🚨 Attackers are exploiting a critical WooCommerce Wholesale Lead Capture flaw to plant PHP web shells. Wordfence has blocked over 100,000 exploit attempts since June against CVE-2026-27540, which affects versions through 2.0.3.1. Read: https://thehackernews.com/2026/09/attackers-exploit-woocommerce-wholesale.html

⚠️ Forged admin JWTs are being used in WSO2 API Manager exploitation attempts. CVE-2026-5430 lets unsupported JWT algorithms
⚠️ Forged admin JWTs are being used in WSO2 API Manager exploitation attempts. CVE-2026-5430 lets unsupported JWT algorithms bypass authentication and can lead to account takeover. Fixes are available. Read: https://thehackernews.com/2026/09/active-exploitation-attempts-target.html

🚨 KREMLIN banking malware bypasses Chromium integrity checks to install a Chrome and Edge extension that steals credentials
🚨 KREMLIN banking malware bypasses Chromium integrity checks to install a Chrome and Edge extension that steals credentials and session tokens. It also uses Ethereum smart contracts to rotate C2 and payload locations. How the attack chain works: https://thehackernews.com/2026/09/kremlin-banking-malware-hijacks-chrome.html

‼️ Iran-attributed HEAVYGRAM, also tracked as CHOSEN BRICK, uses Telegram bots to spy on dissidents and journalists. A joint
‼️ Iran-attributed HEAVYGRAM, also tracked as CHOSEN BRICK, uses Telegram bots to spy on dissidents and journalists. A joint U.S.-U.K.-Dutch advisory says the Windows malware can steal messages and passwords, record audio, capture screenshots, and exfiltrate files. Details → https://thehackernews.com/2026/09/iranian-hackers-use-telegram-controlled.html

🚨 BambooToken uses MQTT to control Windows and Linux hosts across Asia and South America. Lumen identified a dozen compromis
🚨 BambooToken uses MQTT to control Windows and Linux hosts across Asia and South America. Lumen identified a dozen compromised entities, with activity detected as recently as July 2026. Learn what's inside the malware’s MQTT command-and-control: https://thehackernews.com/2026/09/bambootoken-malware-uses-mqtt-to.html

Your Business Continuity Management Checklist. Most resilience programs look complete on paper. Let's make sure yours holds up when it matters most. Discover 6 ways to align your BCM program with operational reality. Get the checklist → https://thn.news/bcm-reality-check

Phishing puts financial SOCs under constant pressure. Cut the workload with ANY.RUN: faster analysis, fewer escalations, and
Phishing puts financial SOCs under constant pressure. Cut the workload with ANY.RUN: faster analysis, fewer escalations, and 21 min lower MTTR. → https://thn.news/phishing-soc-detection

🚨 A human attacker exploited Marimo’s pre-auth RCE and reached an SSH bastion in eight seconds. The operator used harvested
🚨 A human attacker exploited Marimo’s pre-auth RCE and reached an SSH bastion in eight seconds. The operator used harvested AWS credentials to fetch the private key from Secrets Manager and authenticate over SSH. No AI agent was involved. Read: https://thehackernews.com/2026/09/human-attacker-exploits-marimo-rce.html

One attack step can now decide what gets tested next. OpenAEV’s Attack Chaining feeds live findings like credentials, tokens,
One attack step can now decide what gets tested next. OpenAEV’s Attack Chaining feeds live findings like credentials, tokens, and open ports into the next stage, while XTM One can plan and adapt the path inside a defined scope. How the attack path builds: https://thehackernews.com/2026/09/attack-chains-not-just-attack-surfaces.html

⚠️ Exposed Vite dev servers are being scanned for cloud credentials. Attackers are exploiting a Vite flaw to bypass file rest
⚠️ Exposed Vite dev servers are being scanned for cloud credentials. Attackers are exploiting a Vite flaw to bypass file restrictions and retrieve .env files, AWS and Azure credentials, and infrastructure state. How the bypass works: https://thehackernews.com/2026/09/mass-scanning-campaign-exploits-vite.html

Cursor deleted a production database and its backups in nine seconds. The agent found an unrelated Railway API token with bla
Cursor deleted a production database and its backups in nine seconds. The agent found an unrelated Railway API token with blanket GraphQL permissions while handling a staging task. AI blast radius follows credential reach. Why access boundaries matter: https://thehackernews.com/expert-insights/2026/09/stop-trying-to-control-ai-behavior.html

‼️ Warning: LiteSpeed Enterprise before 6.3.7 can let low-privilege website users gain root on shared-hosting servers. It can
‼️ Warning: LiteSpeed Enterprise before 6.3.7 can let low-privilege website users gain root on shared-hosting servers. It can bypass CageFS isolation. No CVE is assigned, exploitation is unknown, and 6.3.7 may not auto-update immediately. Manual update may be required → https://thehackernews.com/2026/09/litespeed-enterprise-flaw-could-let-one.html