uz
Feedback
The Hacker News

The Hacker News

Kanalga Telegram’da o‘tish

⭐ Official THN Telegram Channel — A trusted, widely read, independent source for breaking news and tech coverage about cybersecurity and hacking. 📨 Contact: admin@thehackernews.com 🌐 Website: https://thehackernews.com

Ko'proq ko'rsatish

📈 Telegram kanali The Hacker News analitikasi

The Hacker News (@thehackernews) Ingliz til segmentidagi kanali faol ishtirokchi. Hozirda hamjamiyat 163 483 obunachidan iborat bo'lib, Texnologiyalar & Aralashmalar toifasida 655-o'rinni va AQSH mintaqasida 106-o'rinni egallagan.

📊 Auditoriya ko‘rsatkichlari va dinamika

невідомо sanasidan buyon loyiha tez o‘sib, 163 483 obunachiga ega bo‘ldi.

05 Oktabr, 2026 dagi oxirgi ma’lumotlarga ko‘ra kanal barqaror faollikka ega. Oxirgi 30 kunda obunachilar soni 1 247 ga, so‘nggi 24 soatda esa -144 ga o‘zgardi va umumiy qamrov yuqori darajada qolmoqda.

  • Tasdiqlash holati: Tasdiqlangan (Telegram tomonidan rasmiy tasdiq)
  • Jalb etish (ER): Auditoriya o‘rtacha 4.27% darajada jalb etiladi. Nashrdan keyingi dastlabki 24 soatda kontent odatda umumiy obunachilar sonining 2.88% ini tashkil etuvchi reaksiyalarni to‘playdi.
  • Post qamrovi: Har bir post o‘rtacha 6 987 marta ko‘riladi; birinchi sutkada odatda 4 705 ta ko‘rish yig‘iladi.
  • Reaksiyalar va o‘zaro ta’sir: Auditoriya faol: har bir postga o‘rtacha 10 ta reaksiya keladi.
  • Tematik yo‘nalishlar: Kontent attack, credential, cve-2026, github, backdoor kabi asosiy mavzularga jamlangan.

📝 Tavsif va kontent siyosati

Muallif resursni shaxsiy fikrni ifoda etish maydoni sifatida ta’riflaydi:
“⭐ Official THN Telegram Channel — A trusted, widely read, independent source for breaking news and tech coverage about cybersecurity and hacking. 📨 Contact: admin@thehackernews.com 🌐 Website: https://thehackernews.com”

Yuqori yangilanish chastotasi (oxirgi ma’lumot 06 Oktabr, 2026 da olingan) sababli kanal doimo dolzarb va katta qamrovli bo‘lib qoladi. Analitika auditoriya kontent bilan faol hamkorlik qilishini, uni Texnologiyalar & Aralashmalar toifasidagi muhim ta’sir nuqtasiga aylantirishini ko‘rsatadi.

163 483
Obunachilar
-14424 soatlar
-4467 kun
+1 24730 kun
Obunachilarni jalb qilish
Okt '26
Oktabr '26
+67
7 kanalda
Sentabr '26
+3 382
13 kanalda
Get PRO
Avgust '26
+1 157
23 kanalda
Get PRO
Iyul '26
+1 477
20 kanalda
Get PRO
Iyun '26
+994
18 kanalda
Get PRO
May '26
+1 175
24 kanalda
Get PRO
Aprel '26
+4 326
26 kanalda
Get PRO
Mart '26
+6 849
26 kanalda
Get PRO
Fevral '26
+1 583
27 kanalda
Get PRO
Yanvar '26
+1 516
23 kanalda
Get PRO
Dekabr '25
+1 900
34 kanalda
Get PRO
Noyabr '25
+1 648
25 kanalda
Get PRO
Oktabr '25
+1 634
21 kanalda
Get PRO
Sentabr '25
+1 163
25 kanalda
Get PRO
Avgust '25
+1 070
17 kanalda
Get PRO
Iyul '25
+1 318
28 kanalda
Get PRO
Iyun '25
+2 024
24 kanalda
Get PRO
May '25
+1 328
24 kanalda
Get PRO
Aprel '25
+1 758
13 kanalda
Get PRO
Mart '25
+1 782
16 kanalda
Get PRO
Fevral '25
+2 159
19 kanalda
Get PRO
Yanvar '25
+2 315
31 kanalda
Get PRO
Dekabr '24
+3 006
22 kanalda
Get PRO
Noyabr '24
+3 500
12 kanalda
Get PRO
Oktabr '24
+3 385
18 kanalda
Get PRO
Sentabr '24
+2 583
22 kanalda
Get PRO
Avgust '24
+2 157
16 kanalda
Get PRO
Iyul '24
+1 844
11 kanalda
Get PRO
Iyun '24
+1 514
7 kanalda
Get PRO
May '24
+1 079
9 kanalda
Get PRO
Aprel '24
+1 306
11 kanalda
Get PRO
Mart '24
+1 332
13 kanalda
Get PRO
Fevral '24
+630
14 kanalda
Get PRO
Yanvar '24
+1 075
14 kanalda
Get PRO
Dekabr '23
+973
7 kanalda
Get PRO
Noyabr '23
+1 457
8 kanalda
Get PRO
Oktabr '23
+3 536
5 kanalda
Get PRO
Sentabr '23
+3 177
0 kanalda
Get PRO
Avgust '23
+3 401
0 kanalda
Get PRO
Iyul '23
+2 829
0 kanalda
Get PRO
Iyun '23
+2 847
0 kanalda
Get PRO
May '23
+2 417
0 kanalda
Get PRO
Aprel '23
+2 646
0 kanalda
Get PRO
Mart '23
+2 345
0 kanalda
Get PRO
Fevral '23
+2 328
0 kanalda
Get PRO
Yanvar '23
+2 603
0 kanalda
Get PRO
Dekabr '22
+2 541
0 kanalda
Get PRO
Noyabr '22
+2 543
0 kanalda
Get PRO
Oktabr '22
+3 146
0 kanalda
Get PRO
Sentabr '22
+3 951
0 kanalda
Get PRO
Avgust '22
+2 425
0 kanalda
Get PRO
Iyul '22
+2 611
0 kanalda
Get PRO
Iyun '22
+2 636
0 kanalda
Get PRO
May '22
+3 979
0 kanalda
Get PRO
Aprel '22
+4 171
0 kanalda
Get PRO
Mart '22
+6 802
0 kanalda
Get PRO
Fevral '22
+3 153
0 kanalda
Get PRO
Yanvar '22
+4 050
0 kanalda
Get PRO
Dekabr '21
+4 346
0 kanalda
Get PRO
Noyabr '21
+4 152
0 kanalda
Get PRO
Oktabr '21
+6 200
0 kanalda
Get PRO
Sentabr '21
+5 226
0 kanalda
Get PRO
Avgust '21
+5 134
0 kanalda
Get PRO
Iyul '21
+6 261
0 kanalda
Get PRO
Iyun '21
+2 427
0 kanalda
Get PRO
May '21
+731
0 kanalda
Get PRO
Aprel '21
+1 029
0 kanalda
Get PRO
Mart '21
+1 300
0 kanalda
Get PRO
Fevral '21
+786
0 kanalda
Get PRO
Yanvar '21
+1 163
0 kanalda
Get PRO
Dekabr '20
+22 087
0 kanalda
Sana
Obunachilarni jalb qilish
Esdaliklar
Kanallar
06 Oktabr+2
05 Oktabr+1
04 Oktabr+20
03 Oktabr+11
02 Oktabr+6
01 Oktabr+27
Kanal postlari
⚡ Google just paused product bug bounty rewards for some of its biggest open-source projects. It says automated submissions s
⚡ Google just paused product bug bounty rewards for some of its biggest open-source projects. It says automated submissions surged, and the vast majority were invalid. Go, Angular, Flutter, Bazel, and Protocol Buffers are among the affected projects. Supply chain rewards continue. Read: https://thehackernews.com/2026/10/google-pauses-oss-product-bug-bounty.html

2
‼️ A critical Atlassian vulnerability rated CVSS 9.3 affects 8 Data Center products. CVE-2026-21589 can let unauthenticated a
‼️ A critical Atlassian vulnerability rated CVSS 9.3 affects 8 Data Center products. CVE-2026-21589 can let unauthenticated attackers read specific files if they know the exact file path. Internet-facing instances should be upgraded or restricted. Details - https://thehackernews.com/2026/10/critical-atlassian-flaw-lets.html
2 439
3
‼️ A security patch wasn’t applied. Thousands of FBI employees had personal details stolen. The FBI has now removed an Accent
‼️ A security patch wasn’t applied. Thousands of FBI employees had personal details stolen. The FBI has now removed an Accenture contractor over the security failure tied to the ShinyHunters breach. Read the full report → https://thehackernews.com/2026/10/fbi-removes-accenture-contractor-after.html
2 379
4
⚠️ Denmark says unauthorized parties accessed names, addresses and CPR numbers for about 8.8 million people, roughly 4 in 5 r
⚠️ Denmark says unauthorized parties accessed names, addresses and CPR numbers for about 8.8 million people, roughly 4 in 5 records in its national register, via a private company’s lawful access. Automated lookups ran 10 days; police are investigating. Details → https://thehackernews.com/2026/10/denmark-says-attackers-accessed-cpr.html
2 692
5
🚨 ClickFix has a new trick... the malicious payload is already sitting in your browser cache before you paste the command. C
🚨 ClickFix has a new trick... the malicious payload is already sitting in your browser cache before you paste the command. Compromised sites preload scripts disguised as PNGs, letting pasted commands bypass Windows Run's ~260-character limit and launch a multi-stage malware chain. Read: https://thehackernews.com/2026/10/clickfix-smuggles-payloads-through.html
2 716
6
‼️ ALERT - Exchange admins should review this now. CVE-2026-96940 can allow an authenticated attacker to access other users’
‼️ ALERT - Exchange admins should review this now. CVE-2026-96940 can allow an authenticated attacker to access other users’ mailboxes and read emails and attachments within the same organization. Microsoft has issued out-of-band fixes. Read: https://thehackernews.com/2026/10/microsoft-exchange-flaw-lets.html
5 179
7
GitGuardian found 28.65 million new hardcoded secrets in public GitHub commits in 2025, up 34% year over year. It also found 24,008 unique secrets in public MCP configuration files, including 2,117 verified as valid. See how credentials are spreading across code, endpoints, and AI tooling: https://thehackernews.com/2026/10/the-credential-layer-is-expanding.html
4 769
8
15 cyber stories worth 2 minutes of your attention: • NetScaler + FortiMail 0-days • Spectre v2 leaks root hashes • CosmicPul
15 cyber stories worth 2 minutes of your attention: • NetScaler + FortiMail 0-days • Spectre v2 leaks root hashes • CosmicPulse phishing • NeedyMantis persistence • RatHat + Gemini targeting • 13K AI-leaked screenshots • Ransomware arrests • Microsoft X hijack • WordPress credential theft • PageBreak AI vuln hunting • Milk Dragon phishing • NodeStealer upgrades • Direct Send bypass • PaperCut exploitation • AI models building exploits • Plus a huge CVE pile Full ThreatsDay recap: https://thehackernews.com/2026/10/weekly-recap-netscaler-and-fortimail-0.html
4 729
9
CJIS compliance starts with stronger authentication. Weak passwords and inconsistent MFA enforcement can create compliance an
CJIS compliance starts with stronger authentication. Weak passwords and inconsistent MFA enforcement can create compliance and security challenges for agencies and organizations that handle criminal justice information. Download our practical guide to learn: ✅ Key CJIS password requirements ✅ MFA compliance best practices ✅ Common compliance gaps to avoid ✅ Steps to strengthen your security posture Get the guide: https://thn.news/password-mfa-standards
4 653
10
🚨 Cling hides C2 commands in STUN traffic as threat actors were observed attempting to exploit Realtek Jungle SDK flaw CVE-2
🚨 Cling hides C2 commands in STUN traffic as threat actors were observed attempting to exploit Realtek Jungle SDK flaw CVE-2021-35394. A subset of that activity delivered the botnet. Read how Cling uses STUN for command-and-control, persistence, propagation, proxying, tunneling, and DoS: https://thehackernews.com/2026/10/realtek-jungle-sdk-exploit-attempts.html
1
11
🚨 Cling hides C2 commands in STUN traffic as threat actors were observed attempting to exploit Realtek Jungle SDK flaw CVE-2
🚨 Cling hides C2 commands in STUN traffic as threat actors were observed attempting to exploit Realtek Jungle SDK flaw CVE-2021-35394. A subset of that activity delivered the botnet. Read how Cling uses STUN for command-and-control, persistence, propagation, proxying, tunneling, and DoS: https://thehackernews.com/2026/10/realtek-jungle-sdk-exploit-attempts.html
1
12
🚨 Cling hides C2 commands in STUN traffic as threat actors were observed attempting to exploit Realtek Jungle SDK flaw CVE-2
🚨 Cling hides C2 commands in STUN traffic as threat actors were observed attempting to exploit Realtek Jungle SDK flaw CVE-2021-35394. A subset of that activity delivered the botnet. Read how Cling uses STUN for command-and-control, persistence, propagation, proxying, tunneling, and DoS: https://thehackernews.com/2026/10/realtek-jungle-sdk-exploit-attempts.html
4 500
13
⚡ Apple is tightening macOS Full Disk Access, a permission that can let AI agents read files, mail, messages, browsing histor
⚡ Apple is tightening macOS Full Disk Access, a permission that can let AI agents read files, mail, messages, browsing history, and more. Future access will require explicit user action. Here's what Apple is changing: https://thehackernews.com/2026/10/apple-plans-tighter-macos-full-disk.html
4 682
14
A financial app treated a GUID like proof of access. In a penetration test described by Sygnia's Zach Mead, the AI-assisted o
A financial app treated a GUID like proof of access. In a penetration test described by Sygnia's Zach Mead, the AI-assisted onboarding flow could issue or restore an applicant token if another applicant’s GUID was obtained, potentially exposing sensitive personal and financial data. How the trust failure worked: https://thehackernews.com/expert-insights/2026/10/when-ai-writes-code-who-owns-security.html
4 594
15
⚠️ Attackers are targeting a Rejetto HFS flaw that enables forged admin sessions and remote code execution. CVE-2026-61500 af
⚠️ Attackers are targeting a Rejetto HFS flaw that enables forged admin sessions and remote code execution. CVE-2026-61500 affects HFS 3.0.0–3.2.0. VulnCheck detected exploitation attempts against vulnerable U.S. hosts after a public PoC was released. Read - https://thehackernews.com/2026/10/attackers-target-rejetto-hfs-flaw-that.html
4 786
16
An AI pentesting agent says it exploited a bug. Did it? XRanges for AI watches from inside the target, recording exploit-chai
An AI pentesting agent says it exploited a bug. Did it? XRanges for AI watches from inside the target, recording exploit-chain progress, coverage, boundary violations, and whether the environment survives the run. Inside the scoring: https://thehackernews.com/2026/09/545-hackers-tested-it-first-now-xranges.html
5 122
17
‼️ Citrix has patched a new NetScaler zero-day exploited in targeted attacks. CVE-2026-88779 affects certain SAML-configured
‼️ Citrix has patched a new NetScaler zero-day exploited in targeted attacks. CVE-2026-88779 affects certain SAML-configured deployments & can cause denial-of-service, with repeated triggering potentially leaving services unavailable. Details - https://thehackernews.com/2026/10/new-netscaler-zero-day-exploited-in.html
5 205
18
‼️ A suspected #ShinyHunters member is reportedly helping the FBI identify others in the group. Rey, also known as ReyXBF, wa
‼️ A suspected #ShinyHunters member is reportedly helping the FBI identify others in the group. Rey, also known as ReyXBF, was allegedly detained in Jordan on September 29. His cooperation is now feeding an ongoing effort to pursue more members. Read: https://thehackernews.com/2026/10/shinyhunters-suspect-rey-reportedly.html
7 520
19
TA419 is targeting U.S. AI policy experts with Microsoft AitM phishing. The China-aligned group waits for targets to reply, t
TA419 is targeting U.S. AI policy experts with Microsoft AitM phishing. The China-aligned group waits for targets to reply, then sends a shortened link to a Frameless BitB page built to capture credentials and session cookies. Read about the technique: https://thehackernews.com/2026/10/china-aligned-ta419-targets-us-ai.html
6 509
20
⚡ MI5 named a Chinese institute an MSS front and said 100+ UK-linked academics helped fund its spy tech. A 30 Sept alert says
⚡ MI5 named a Chinese institute an MSS front and said 100+ UK-linked academics helped fund its spy tech. A 30 Sept alert says CGTRI exists to bankroll work that improves MSS capability: AI, cyber, covert comms, steganography. Some academics may not know who paid. Beijing calls it fabricated. Read: https://thehackernews.com/2026/10/mi5-says-chinas-mss-funded-research.html
7 108