uz
Feedback
The Hacker News

The Hacker News

Kanalga Telegram’da o‘tish

⭐ Official THN Telegram Channel — A trusted, widely read, independent source for breaking news and tech coverage about cybersecurity and hacking. 📨 Contact: admin@thehackernews.com 🌐 Website: https://thehackernews.com

Ko'proq ko'rsatish

📈 Telegram kanali The Hacker News analitikasi

The Hacker News (@thehackernews) Ingliz til segmentidagi kanali faol ishtirokchi. Hozirda hamjamiyat 162 214 obunachidan iborat bo'lib, Texnologiyalar & Aralashmalar toifasida 660-o'rinni va AQSH mintaqasida 111-o'rinni egallagan.

📊 Auditoriya ko‘rsatkichlari va dinamika

невідомо sanasidan buyon loyiha tez o‘sib, 162 214 obunachiga ega bo‘ldi.

25 Avgust, 2026 dagi oxirgi ma’lumotlarga ko‘ra kanal barqaror faollikka ega. Oxirgi 30 kunda obunachilar soni 158 ga, so‘nggi 24 soatda esa 10 ga o‘zgardi va umumiy qamrov yuqori darajada qolmoqda.

  • Tasdiqlash holati: Tasdiqlangan (Telegram tomonidan rasmiy tasdiq)
  • Jalb etish (ER): Auditoriya o‘rtacha 4.47% darajada jalb etiladi. Nashrdan keyingi dastlabki 24 soatda kontent odatda umumiy obunachilar sonining 2.98% ini tashkil etuvchi reaksiyalarni to‘playdi.
  • Post qamrovi: Har bir post o‘rtacha 7 255 marta ko‘riladi; birinchi sutkada odatda 4 828 ta ko‘rish yig‘iladi.
  • Reaksiyalar va o‘zaro ta’sir: Auditoriya faol: har bir postga o‘rtacha 14 ta reaksiya keladi.
  • Tematik yo‘nalishlar: Kontent attack, credential, cve-2026, github, backdoor kabi asosiy mavzularga jamlangan.

📝 Tavsif va kontent siyosati

Muallif resursni shaxsiy fikrni ifoda etish maydoni sifatida ta’riflaydi:
⭐ Official THN Telegram Channel — A trusted, widely read, independent source for breaking news and tech coverage about cybersecurity and hacking. 📨 Contact: admin@thehackernews.com 🌐 Website: https://thehackernews.com

Yuqori yangilanish chastotasi (oxirgi ma’lumot 26 Avgust, 2026 da olingan) sababli kanal doimo dolzarb va katta qamrovli bo‘lib qoladi. Analitika auditoriya kontent bilan faol hamkorlik qilishini, uni Texnologiyalar & Aralashmalar toifasidagi muhim ta’sir nuqtasiga aylantirishini ko‘rsatadi.

162 214
Obunachilar
+1024 soatlar
+1137 kunlar
+15830 kunlar
Postlar arxiv
🔥 FBI shuts down Chinese hacking platforms tied to intrusions at NASA, the Fed, and U.S. Senate. QScan exploited vulnerable
🔥 FBI shuts down Chinese hacking platforms tied to intrusions at NASA, the Fed, and U.S. Senate. QScan exploited vulnerable IoT devices, while QTRouter hid attack traffic behind compromised devices, commercial proxies, and VPSs. How it worked: https://thehackernews.com/2026/08/fbi-disrupts-china-linked-qtfy.html

🛑 CISA red teams compromised two critical infrastructure organizations. One SOC detected nothing. The other caught the initi
🛑 CISA red teams compromised two critical infrastructure organizations. One SOC detected nothing. The other caught the initial phishing and isolated affected workstations within 2–20 minutes. Learn why one SOC saw it and the other didn’t: https://thehackernews.com/2026/08/cisa-red-team-compromised-two-critical.html

Agentic SOCs can investigate alerts before analysts touch them. AI agents can validate detections, test hypotheses against ne
Agentic SOCs can investigate alerts before analysts touch them. AI agents can validate detections, test hypotheses against network telemetry, and return evidence-backed cases in seconds or minutes. The shift: investigate first, escalate to humans when the evidence warrants it. How the model works: https://thehackernews.com/2026/08/imagine-soc-without-queue-from-alert.html

🚨 Unpatched Kaltura (a video management and streaming platform) flaws expose server files and could enable RCE. The mwEmbed
🚨 Unpatched Kaltura (a video management and streaming platform) flaws expose server files and could enable RCE. The mwEmbed bugs need no authentication. Both stem from unsafe deserialization, and CERT/CC says no fix is available. Read details here: https://thehackernews.com/2026/08/unpatched-kaltura-mwembed-flaws-could.html

‼️ Nobody asked #Claude to cancel another gym member's booking. Aikido rebuilt the Australian gym app and tested Opus 4.6 on
‼️ Nobody asked #Claude to cancel another gym member's booking. Aikido rebuilt the Australian gym app and tested Opus 4.6 on #OpenClaw. The model bypassed its browser-only 7-day booking limit in 9 of 10 runs. In two runs, it also canceled another member’s reservation. Read: https://thehackernews.com/2026/08/claude-opus-46-bypasses-gym-booking.html

⚠️ Russian operators used ChatGPT to run an influence operation. OpenAI banned the accounts after finding they used VPNs to b
⚠️ Russian operators used ChatGPT to run an influence operation. OpenAI banned the accounts after finding they used VPNs to bypass restrictions and generated posts promoting the International Burke Institute across Substack, Telegram, X, Facebook and LinkedIn. What OpenAI uncovered: https://thehackernews.com/2026/08/openai-bans-russian-chatgpt-accounts.html

58 arrested in INTERPOL crackdown on West African cyber-enabled fraud. Operation Jackal IV identified 263 suspects across 22
58 arrested in INTERPOL crackdown on West African cyber-enabled fraud. Operation Jackal IV identified 263 suspects across 22 countries. One Romanian investment scam is estimated to have stolen and laundered €143 million globally. Inside the operation: https://thehackernews.com/2026/08/interpol-operation-jackal-iv-arrests-58.html

🚨 Attackers are exploiting a critical Gitea RCE flaw. CVE-2026-60004 can let an external attacker gain repo write access via
🚨 Attackers are exploiting a critical Gitea RCE flaw. CVE-2026-60004 can let an external attacker gain repo write access via open registration and run shell commands as the Gitea service account. One reported attack dropped cryptocurrency-miner-like malware. Read: https://thehackernews.com/2026/08/critical-gitea-rce-actively-exploited.html

⚡ U.S. sanctions Iran-linked hackers tied to critical infrastructure breaches. Three alleged Mabna Institute members are accu
⚡ U.S. sanctions Iran-linked hackers tied to critical infrastructure breaches. Three alleged Mabna Institute members are accused of stealing data from U.S. energy, defense, healthcare, IT, and financial organizations. TRM Labs linked 30 wallets to $16.8 million. Who they hit and where the money went: https://thehackernews.com/2026/08/us-sanctions-iran-linked-hackers-behind.html

UPDATE - Apple fixed the iCloud Private Relay IP leak in iOS 26.6.1 and macOS 26.6.2. The WebKit issue could bypass proxies a
UPDATE - Apple fixed the iCloud Private Relay IP leak in iOS 26.6.1 and macOS 26.6.2. The WebKit issue could bypass proxies and expose users’ real IPs. The fix was not in the iOS 26.6.1 beta. See the update: https://thehackernews.com/2026/08/webkit-proxy-bypasses-can-expose-real.html

48% of Mirage2FA-targeted emails were potentially compromised. ANYRUN uncovered 9,000+ potential compromise events involving
48% of Mirage2FA-targeted emails were potentially compromised. ANYRUN uncovered 9,000+ potential compromise events involving password and cookie theft, SSO logins, and 2FA bypass. Activity is potentially linked to 4,532 organization email domains. See how Mirage2FA works - https://thehackernews.com/2026/08/mirage2fa-surge-hits-4500-us-and-eu.html

‼️ A malicious webpage could poison the AI running on your own machine. A NemoClaw weakness can expose Ollama to DNS rebindin
‼️ A malicious webpage could poison the AI running on your own machine. A NemoClaw weakness can expose Ollama to DNS rebinding, letting an attacker alter its chat template with instructions that persist across conversations. Read how it works - https://thehackernews.com/2026/08/a-malicious-webpage-could-poison-your.html

‼️ A Marimo notebook can launch MCP commands before cells run. CVE-2026-75149 triggers when a crafted notebook is opened in e
‼️ A Marimo notebook can launch MCP commands before cells run. CVE-2026-75149 triggers when a crafted notebook is opened in edit mode. It affects versions before 0.23.15. Marimo fixed it in 0.23.15. Read the details: https://thehackernews.com/2026/08/marimo-notebook-flaw-could-run-mcp.html

Under the EU CRA, a single security question can decide your EU market access. Can your team prove exactly what's inside your
Under the EU CRA, a single security question can decide your EU market access. Can your team prove exactly what's inside your digital product when required? With EU CRA Article 14 reporting coming into force, finding an exploited vulnerability triggers a strict 24-hour response clock. Discover your security compliance gaps with a 5-question assessment. Take the 5-minute assessment - https://thn.news/eu-security-report

⚡ WhatsApp now supports multiple passkeys per account. Users can now use phishing-resistant passkeys across iOS and Android.
⚡ WhatsApp now supports multiple passkeys per account. Users can now use phishing-resistant passkeys across iOS and Android. It’s also adding full passwords for two-step verification and more context for unknown Android calls. WhatsApp says 1 billion+ people already use them. Read: https://thehackernews.com/2026/08/whatsapp-adds-multiple-passkeys-for.html

Frontier AI is outpacing traditional vulnerability management. CVSS, EPSS, and KEV are no longer enough. Teams need exploitab
Frontier AI is outpacing traditional vulnerability management. CVSS, EPSS, and KEV are no longer enough. Teams need exploitability, reachability, misconfigurations, and business impact, plus faster, more automated patching. See what needs to change - https://thehackernews.com/2026/08/frontier-ai-vulnerability-managements.html

🚨 24 npm packages are turning unpkg into phishing infrastructure. They serve fake Cloudflare CAPTCHA pages from trusted unpk
🚨 24 npm packages are turning unpkg into phishing infrastructure. They serve fake Cloudflare CAPTCHA pages from trusted unpkg URLs and use attacker-controlled redirect logic. The packages target visitors, not developers installing them. See how it works - https://thehackernews.com/2026/08/24-npm-packages-abuse-unpkg-mirrors-to.html

⚠️ E4del and PINHOLE RATs hide commands in FTP banners. The campaigns turn FTP server welcome messages into dead drop resolve
⚠️ E4del and PINHOLE RATs hide commands in FTP banners. The campaigns turn FTP server welcome messages into dead drop resolvers to fetch commands or C2 details. PINHOLE also uses Pinterest and SurveyMonkey for C2 resolution. See how the technique works - https://thehackernews.com/2026/08/e4del-and-pinhole-rats-turn-ftp-banners.html

More threat data can make OT security harder, not better. Jaron Stammler of OMICRON Electronics explains why critical infrast
More threat data can make OT security harder, not better. Jaron Stammler of OMICRON Electronics explains why critical infrastructure teams need threat intelligence tied to the equipment, protocols, and processes they actually run, not another stream of generic indicators. The real question: Does this threat affect this OT environment? Read: https://thehackernews.com/expert-insights/2026/08/why-threat-intelligence-needs-ot.html

🚨 Two miniOrange SAML flaws can give attackers WordPress admin access. Attackers are probing the authentication bypasses, wh
🚨 Two miniOrange SAML flaws can give attackers WordPress admin access. Attackers are probing the authentication bypasses, which let unauthenticated users sign in as any existing account, including administrators. Read the details - https://thehackernews.com/2026/08/attackers-target-miniorange-saml-flaws.html