The Hacker News
⭐ Official THN Telegram Channel — A trusted, widely read, independent source for breaking news and tech coverage about cybersecurity and hacking. 📨 Contact: admin@thehackernews.com 🌐 Website: https://thehackernews.com
Ko'proq ko'rsatish📈 Telegram kanali The Hacker News analitikasi
The Hacker News (@thehackernews) Ingliz til segmentidagi kanali faol ishtirokchi. Hozirda hamjamiyat 162 214 obunachidan iborat bo'lib, Texnologiyalar & Aralashmalar toifasida 660-o'rinni va AQSH mintaqasida 111-o'rinni egallagan.
📊 Auditoriya ko‘rsatkichlari va dinamika
невідомо sanasidan buyon loyiha tez o‘sib, 162 214 obunachiga ega bo‘ldi.
25 Avgust, 2026 dagi oxirgi ma’lumotlarga ko‘ra kanal barqaror faollikka ega. Oxirgi 30 kunda obunachilar soni 158 ga, so‘nggi 24 soatda esa 10 ga o‘zgardi va umumiy qamrov yuqori darajada qolmoqda.
- Tasdiqlash holati: Tasdiqlangan (Telegram tomonidan rasmiy tasdiq)
- Jalb etish (ER): Auditoriya o‘rtacha 4.47% darajada jalb etiladi. Nashrdan keyingi dastlabki 24 soatda kontent odatda umumiy obunachilar sonining 2.98% ini tashkil etuvchi reaksiyalarni to‘playdi.
- Post qamrovi: Har bir post o‘rtacha 7 255 marta ko‘riladi; birinchi sutkada odatda 4 828 ta ko‘rish yig‘iladi.
- Reaksiyalar va o‘zaro ta’sir: Auditoriya faol: har bir postga o‘rtacha 14 ta reaksiya keladi.
- Tematik yo‘nalishlar: Kontent attack, credential, cve-2026, github, backdoor kabi asosiy mavzularga jamlangan.
📝 Tavsif va kontent siyosati
Muallif resursni shaxsiy fikrni ifoda etish maydoni sifatida ta’riflaydi:
“⭐ Official THN Telegram Channel — A trusted, widely read, independent source for breaking news and tech coverage about cybersecurity and hacking.
📨 Contact: admin@thehackernews.com
🌐 Website: https://thehackernews.com”
Yuqori yangilanish chastotasi (oxirgi ma’lumot 26 Avgust, 2026 da olingan) sababli kanal doimo dolzarb va katta qamrovli bo‘lib qoladi. Analitika auditoriya kontent bilan faol hamkorlik qilishini, uni Texnologiyalar & Aralashmalar toifasidagi muhim ta’sir nuqtasiga aylantirishini ko‘rsatadi.
Ma'lumot yuklanmoqda...
| Sana | Obunachilarni jalb qilish | Esdaliklar | Kanallar | |
| 26 Avgust | +28 | |||
| 25 Avgust | +38 | |||
| 24 Avgust | +45 | |||
| 23 Avgust | +17 | |||
| 22 Avgust | +62 | |||
| 21 Avgust | +56 | |||
| 20 Avgust | +52 | |||
| 19 Avgust | +37 | |||
| 18 Avgust | +36 | |||
| 17 Avgust | +23 | |||
| 16 Avgust | +35 | |||
| 15 Avgust | +10 | |||
| 14 Avgust | +48 | |||
| 13 Avgust | +61 | |||
| 12 Avgust | +40 | |||
| 11 Avgust | +26 | |||
| 10 Avgust | +15 | |||
| 09 Avgust | +29 | |||
| 08 Avgust | +26 | |||
| 07 Avgust | +20 | |||
| 06 Avgust | +45 | |||
| 05 Avgust | +44 | |||
| 04 Avgust | +33 | |||
| 03 Avgust | +54 | |||
| 02 Avgust | +37 | |||
| 01 Avgust | +29 |
| 2 | ⚠️ Russian operators used ChatGPT to run an influence operation.
OpenAI banned the accounts after finding they used VPNs to bypass restrictions and generated posts promoting the International Burke Institute across Substack, Telegram, X, Facebook and LinkedIn.
What OpenAI uncovered: https://thehackernews.com/2026/08/openai-bans-russian-chatgpt-accounts.html | 1 350 |
| 3 | 58 arrested in INTERPOL crackdown on West African cyber-enabled fraud.
Operation Jackal IV identified 263 suspects across 22 countries. One Romanian investment scam is estimated to have stolen and laundered €143 million globally.
Inside the operation: https://thehackernews.com/2026/08/interpol-operation-jackal-iv-arrests-58.html | 2 144 |
| 4 | 🚨 Attackers are exploiting a critical Gitea RCE flaw.
CVE-2026-60004 can let an external attacker gain repo write access via open registration and run shell commands as the Gitea service account.
One reported attack dropped cryptocurrency-miner-like malware.
Read: https://thehackernews.com/2026/08/critical-gitea-rce-actively-exploited.html | 3 076 |
| 5 | ⚡ U.S. sanctions Iran-linked hackers tied to critical infrastructure breaches.
Three alleged Mabna Institute members are accused of stealing data from U.S. energy, defense, healthcare, IT, and financial organizations.
TRM Labs linked 30 wallets to $16.8 million.
Who they hit and where the money went: https://thehackernews.com/2026/08/us-sanctions-iran-linked-hackers-behind.html | 4 926 |
| 6 | UPDATE - Apple fixed the iCloud Private Relay IP leak in iOS 26.6.1 and macOS 26.6.2.
The WebKit issue could bypass proxies and expose users’ real IPs. The fix was not in the iOS 26.6.1 beta.
See the update: https://thehackernews.com/2026/08/webkit-proxy-bypasses-can-expose-real.html | 4 920 |
| 7 | 48% of Mirage2FA-targeted emails were potentially compromised.
ANYRUN uncovered 9,000+ potential compromise events involving password and cookie theft, SSO logins, and 2FA bypass. Activity is potentially linked to 4,532 organization email domains.
See how Mirage2FA works - https://thehackernews.com/2026/08/mirage2fa-surge-hits-4500-us-and-eu.html | 4 886 |
| 8 | ‼️ A malicious webpage could poison the AI running on your own machine.
A NemoClaw weakness can expose Ollama to DNS rebinding, letting an attacker alter its chat template with instructions that persist across conversations.
Read how it works - https://thehackernews.com/2026/08/a-malicious-webpage-could-poison-your.html | 4 774 |
| 9 | ‼️ A Marimo notebook can launch MCP commands before cells run.
CVE-2026-75149 triggers when a crafted notebook is opened in edit mode. It affects versions before 0.23.15.
Marimo fixed it in 0.23.15.
Read the details: https://thehackernews.com/2026/08/marimo-notebook-flaw-could-run-mcp.html | 4 292 |
| 10 | Under the EU CRA, a single security question can decide your EU market access.
Can your team prove exactly what's inside your digital product when required? With EU CRA Article 14 reporting coming into force, finding an exploited vulnerability triggers a strict 24-hour response clock. Discover your security compliance gaps with a 5-question assessment.
Take the 5-minute assessment - https://thn.news/eu-security-report | 4 108 |
| 11 | ⚡ WhatsApp now supports multiple passkeys per account.
Users can now use phishing-resistant passkeys across iOS and Android. It’s also adding full passwords for two-step verification and more context for unknown Android calls.
WhatsApp says 1 billion+ people already use them.
Read: https://thehackernews.com/2026/08/whatsapp-adds-multiple-passkeys-for.html | 3 939 |
| 12 | Frontier AI is outpacing traditional vulnerability management.
CVSS, EPSS, and KEV are no longer enough. Teams need exploitability, reachability, misconfigurations, and business impact, plus faster, more automated patching.
See what needs to change - https://thehackernews.com/2026/08/frontier-ai-vulnerability-managements.html | 4 064 |
| 13 | 🚨 24 npm packages are turning unpkg into phishing infrastructure.
They serve fake Cloudflare CAPTCHA pages from trusted unpkg URLs and use attacker-controlled redirect logic.
The packages target visitors, not developers installing them.
See how it works - https://thehackernews.com/2026/08/24-npm-packages-abuse-unpkg-mirrors-to.html | 4 262 |
| 14 | ⚠️ E4del and PINHOLE RATs hide commands in FTP banners.
The campaigns turn FTP server welcome messages into dead drop resolvers to fetch commands or C2 details.
PINHOLE also uses Pinterest and SurveyMonkey for C2 resolution.
See how the technique works - https://thehackernews.com/2026/08/e4del-and-pinhole-rats-turn-ftp-banners.html | 4 241 |
| 15 | More threat data can make OT security harder, not better.
Jaron Stammler of OMICRON Electronics explains why critical infrastructure teams need threat intelligence tied to the equipment, protocols, and processes they actually run, not another stream of generic indicators.
The real question: Does this threat affect this OT environment?
Read: https://thehackernews.com/expert-insights/2026/08/why-threat-intelligence-needs-ot.html | 4 578 |
| 16 | 🚨 Two miniOrange SAML flaws can give attackers WordPress admin access.
Attackers are probing the authentication bypasses, which let unauthenticated users sign in as any existing account, including administrators.
Read the details - https://thehackernews.com/2026/08/attackers-target-miniorange-saml-flaws.html | 5 034 |
| 17 | 🚨 Attackers are actively exploiting a CVSS 10.0 Oracle WebLogic flaw
CVE-2026-21962 can let unauthenticated attackers access or modify critical data in Oracle HTTP Server and WebLogic Server Proxy Plug-in via HTTP.
See the exploitation details - https://thehackernews.com/2026/08/actively-exploited-oracle-weblogic-flaw.html | 5 305 |
| 18 | ⚠️ Fake Minecraft clients are spreading Weedhack malware through search results.
Spoofed sites for Xenon, Nova, and other clients can outrank legitimate sources. Weedhack JARs can steal data and add Microsoft Defender exclusions.
How it spreads: https://thehackernews.com/2026/08/weedhack-malware-spreads-via-fake.html | 6 550 |
| 19 | ⚡ This week in cybersecurity:
🤖 AI PLC Attacks
🚨 GitLab Exploited
📦 npm Backdoors
💳 Zombie Card Fraud
🔑 Auth Flow Hijacks
☁️ Cloud Spectre Leak
🕸️ Windchill Web Shells
📱 Android Kernel Flaw
💰 Stripe Keys Leaked
🖥️ ScreenConnect Abuse
🎣 DCRat Phishing
📍 Find My Tracking
🎧 Audio Fingerprinting
Catch up on everything that mattered this week - https://thehackernews.com/2026/08/weekly-recap-ai-powered-plc-attacks.html | 6 689 |
| 20 | ⚡ Shipping code 10–50× faster? Security has to keep up.
AI coding is adding open-source dependencies faster, and remediation debt can pile up behind them.
See what 300 enterprise leaders found, where controls are falling short, and which governance models are working.
Join the webinar: https://thehackernews.com/2026/08/shipping-more-ai-code-than-you-can.html | 5 981 |
