❌ هشدار ESET به کاربران در مورد هوش مصنوعی 🔷 محققان امنیت سایبری، تغییرات نگرانکنندهای را در نحوه عملکرد مهاجمان در سال 2025 ثبت کردهاند که نشان میدهد بدافزارهای مبتنی بر هوش مصنوعی دیگر یک نگرانی دور از دسترس نیستند، بلکه یک تهدید فعال هستند که سیستمهای سراسر جهان را هدف قرار میدهند. 🔷این تغییر نشاندهنده همگرایی دو تهدید جداگانه قبلی است: توسعه بدافزار پیشرفته و قابلیتهای هوش مصنوعی. 🔷تحلیلگران ESET، اولی…

Channel
Mashhad Security Event | دورهمی امنیت مشهد
@mashhad_sec_event
On this record: Growth · Engagement · What this channel posts · Reactions · Posts · Citations · Cite this entry
228subscribers
+0 since we began measuring on 7 August 2026
Risers and fallers across the register · movement among entries of Under 1,000.
Register entry
| Telegram ID | -1002153449389 |
|---|---|
| Type | Channel |
| Username | @mashhad_sec_event |
| Description | کانال اطلاعرسانی جلسات دورهمی امنیت مشهد |
| Created | Between 1 May 2024 and 31 October 2024— estimated from Telegram’s id allocation, not measured. How this range is calculated. |
| First recorded | 8 August 2026 |
| Last confirmed live | 8 August 2026 |
| Measurements held | 2 |
| On Telegram | t.me/mashhad_sec_event |
Growth
| Measured (UTC) | Subscribers | Change |
|---|---|---|
| 8 Aug 2026, 10:18 | 228 | no change |
| 7 Aug 2026, 17:42 | 228 | first reading |
Engagement
20 posts held, back to 1 December 2025 — the reader has not yet reached the start of this channel’s public history, so older posts may sit further back, unread. Read across 1 pageof Telegram’s post history, 20 posts per page.
Nothing published in the last 30 days. ERR and ER are rolling 30-day measures, so there is nothing to compute — we hold 20 posts for this entry, the most recent from 6 January 2026. An engagement rate over an empty window would be a number about nothing.
What this channel posts
- Photos
- 123
- Videos
- 3
- Links
- 12
Lifetime counters from Telegram’s own channel header, read 8 August 2026 — not the date at the top of this page, which is when the subscriber count was last read. Below Telegram’s rounding threshold, so these counts are exact.
- Video runtime
- 25s
- Average length
- 25s
Measured directly from 1 video with a duration reading, out of the posts we hold for this channel — not this channel’s whole posting history, only the sample this register has actually read. An exact reading to the second, taken from the post itself rather than from Telegram’s own rounded chrome, so it carries no ≈ mark.
Reaction mix
20 reactions across 7 posts, in 4 distinct kinds. The most used accounts for 50.0% of them.
| Reaction | Count | Share | Share, drawn |
|---|---|---|---|
| ❤ | 10 | 50.0% | |
| 🔥 | 7 | 35.0% | |
| 🤣 | 2 | 10.0% | |
| 👍 | 1 | 5.00% |
No sentiment is inferred, and none should be read in. This table is ordered by count and by nothing else. Emoji do not carry stable meaning across languages or communities — 🙏 is thanks in one channel and mourning in another — so we publish which ones were pressed and how often, and pass no judgement on what an audience meant by them.
Precision. Telegram publishes reaction counts per emoji and short-forms each one — 4.34K, 1.2M — so any single kind at or above 1,000 reaches us at three significant figures, and only counts below 1,000 are exact. The shares above are ratios of those figures and carry the same error. This is also why the total here can differ slightly from a reaction total printed elsewhere on the page: both are sums of the same rounded parts, taken over samples with different edges.
Coverage. Reactions were read on 7 of the 20 sampled posts in this sample. Summed by Telegram’s own count on each post — not by adding up the per-emoji breakdown above — those same posts carry 20reactions in total: the kind of figure the paragraph above means by “a reaction total printed elsewhere on the page”.
Measured over the 20 most recent posts we hold, published 1 December 2025 to 6 January 2026, using the newest reading held for each. Telegram Stars are excluded: they are a payment, not a reaction, and they have their own section.
Recent posts
✅ نقشه راه کسب تخصص در فیلد امنیت سایبری 💢 گامهای مقدماتی ورود تخصصی به بازار کار امنیت سایبری و تست نفوذ که در جلسه دورهمی هفته قبل مطرح شد: 👉 Network+ 👉 Microsoft MCSA Server 2025 👉 CISCO CCNA 👉 Linux Administrator LPIC-1 💢 بعد از گذراندن این پیش نیازها یا همزمان با آن، میتوانید آموزشهای تخصصی هک قانونمند و تست نفوذ (Network Penetration Testing and Ethical Hacking) را فرا بگیرید. #آموزش #تست_نفوذ #هک 🆔 @mas…
🚨 هشدار در خصوص سرقت هویت مشتریان پلتفرمهای خرید آنلاین 🔷یک عملیات گستردهی وباسکیمینگ (Web Skimming) در سراسر اینترنت پدیدار شده است که خریداران آنلاین و دارندگان حساب را با دامنهی بیسابقهای هدف قرار میدهد. 🔷محققان امنیتی، این کمپین جهانی با بیش از ۵۰ اسکریپت را شناسایی کردهاند که اطلاعات حساس را در طول فرآیندهای پرداخت و ایجاد حساب کاربری رهگیری میکند. 🔷این حمله، تکامل قابل توجهی را در نحوه هدف قرار دادن…
📣 برگزاری دورهمی تخصصی 📚 موضوع: آشنایی با تست نفوذ، نقشه راه و بازار کار 👨🏫 ارائه دهنده: آقای دکتر ملک زاده ⏰ زمان برگزاری: دوشنبه ۸ دی ۱۴۰۴ ساعت ۱۶ 🏣 مکان برگزاری: دانشگاه سجاد 🛎 ثبت نام محدود ✅ برای ثبت نام، در پلتفرم های تلگرام و واتساپ به شماره ۰۹۹۳۱۱۹۲۸۴۹ پیام دهید. #دورهمی #تست_نفوذ #ملک_زاده 🆔 @mashhad_security_event2 🆔 @mashhad_sec_event 🟢 «دورهمی امنیت مشهد» آموزش 🟤 اشتراک دانش 🔴 شبکهسازی
❤2
🚨 سرفت داده های کاربران توسط پکیج خطرناک npm 🔷یک بستهی خطرناک npm به نام lotusbail پیامهای واتساپ و دادههای کاربران را از هزاران توسعهدهنده در سراسر جهان سرقت میکند. 🔷این بسته که بیش از ۵۶۰۰۰ بار دانلود شده است، خود را به عنوان یک کتابخانهی قانونی API وب واتساپ جا میزند و مخفیانه در پسزمینه بدافزار اجرا میکند. 🔷این بسته خود را به عنوان انشعابی از بستهی معتبر «@whiskeysockets/baileys» معرفی میکند و باع…
🔵 امکان جدید مایکروسافت تیمز برای مدیران سازمان ها 🔶 مایکروسافت اعلام کرد که مدیران امنیتی به زودی میتوانند از طریق Teams، ارسال پیام، تماس یا دعوتنامه جلسه توسط کاربران خارجی به اعضای سازمان خود را مسدود کنند. 🔶 این ویژگی جدید از اوایل ژانویه آغاز به کار خواهد کرد و Microsoft Teams را با Defender برای Office 365 ادغام میکند و به مدیران امکان میدهد تا مخاطبین خارجی مسدود شده را از طریق فهرست مجاز/مسدود شده در پ…
🔥3
🔴افزونه جعلی در کروم 🔷دو افزونه جعلی کروم با نام «فانتوم شاتل» با جا زدن خود به عنوان سرویسهای VPN قانونی، هزاران کاربر را فریب میدهند و در عین حال مخفیانه ترافیک وب آنها را رهگیری کرده و اطلاعات حساس ورود به سیستم را میدزدند. 🔷 این افزونههای مخرب که از سال ۲۰۱۷ فعال هستند، از طریق فروشگاه وب کروم به بیش از ۲۱۸۰ کاربر توزیع شدهاند و در آنجا بدون شناسایی به فعالیت خود ادامه میدهند 🔷 عامل تهدید پشت این طرح از…
❤3
🚨شناسایی آسیبپذیری روز-صفر در سرویس Gogs 🔻 مهاجمان سایبری در حال سوءاستفاده فعال از یک آسیبپذیری روز-صفر (zero-day) و وصله نشده در Gogs (Go Git Service) هستند. 🔻 این آسیبپذیری بحرانی امکان اجرای کد از راه دور (RCE) را فراهم میکند و تاکنون منجر به نفوذ به حدود 700 سرور میزبان Gogs شده است. 🔻 این نقص امنیتی هنوز بدون وصله رسمی باقی مانده است و مهاجمان در حال بهرهبرداری گسترده از آن هستند. عدم وجود وصله رسمی به …
🛑 انتشار بهروز رسانی امنیتی گوگل کروم 🔷 گوگل نسخه ۱۴۳.۰.۷۴۹۹.۱۴۶/.۱۴۷ کروم را برای رفع آسیبپذیریهای امنیتی حیاتی که میتوانند اجرای کد از راه دور (RCE) را در سیستمهای آسیبدیده فعال کنند، منتشر کرده است. 🔷 این بهروزرسانی اکنون برای کاربران ویندوز و مک در دسترس است و کاربران لینوکس نسخه ۱۴۳.۰.۷۴۹۹.۱۴۶ را دریافت میکنند. انتظار میرود استقرار کامل در روزها و هفتههای آینده انجام شود. 🔷 محققان امنیتی این آسیبپ…
⭕️ ظهور مجدد گروه هکری CyberVolk با یک باجافزار معیوب 🔻 گروه هکری طرفدار روسیه با نام CyberVolk، پس از یک وقفه چند ماهه، با ارائه باجافزار VolkLocker به عنوان سرویس مبتنی بر تلگرام، دوباره ظاهر شده است. 🔻 بر اساس تحلیل پژوهشگران امنیت، باجافزار VolkLocker که پیلودهای مبتنی بر Go را ارائه میدهد و بر روی سیستمهای ویندوزی و لینوکسی قابل اجراست، دارای نقاط ضعفی در کد است که میتواند امکان بازیابی دادههای رمزگذاری…
🤣2
🔴 بهروز رسانی اضطراری اپل برای دو آسیب پذیری روز صفر 🔹 اپل بهروزرسانیهای اضطراری را برای وصله کردن دو آسیبپذیری روز صفر که در یک «حمله بسیار پیچیده»، افراد خاصی را هدف قرار داده بود، منتشر کرده است. 🔹 این آسیبپذیریهای روز صفر با شناسههای CVE-2025-43529 و CVE-2025-14174 ردیابی میشوند. در بولتن امنیتی اپل آمده است: «اپل از گزارشی مبنی بر اینکه این مشکل ممکن است در یک حمله بسیار پیچیده علیه افراد خاص در نسخهه…
🔴 شناسایی آسیبپذیری در دستگاه های NAS 🔻یک آسیبپذیری از نوع تزریق دستور (Command Injection) در دستگاههای ذخیرهسازی تحت شبکه (NAS) مدل ZSPACE Q2C تا نسخه 1.1.0210050 شناسایی شده است. 🔻این ضعف امنیتی در تابع zfilev2_api.OpenSafe واقع در مسیر /v2/file/safe/open وجود دارد که از طریق درخواستهای HTTP POST قابل دسترسی است. مهاجم از راه دور میتواند با دستکاری پارامتر safe_dir، دستورات دلخواه خود را بر روی سیستمعامل د…
❤2
Showing the 12 most recent of 20 posts we hold for @mashhad_sec_event. View and reaction counts are the latest single reading for each post, not a live figure, and a recent post is still accumulating both. A view count marked ≈ was rounded by Telegram before we ever saw it — t.me prints views in full below 1,000 and to three significant figures above, so ≈1,200,000 means somewhere between 1,150,000 and 1,249,999. Unmarked counts are exact. Text is reproduced from the public post preview and truncated for length.
Mentions
Names
Channels on the register whose handles appear in this channel's posts.
A mention is a weaker signal than a forward and is counted separately for that reason — naming a channel is not republishing it, and a handle in a post body is easy to place deliberately. The post counts beside each row below are distinct posts in which the handle appeared, from posts we have read on both sides — the “Named by N registered channels” figure above is a different count, of distinct NAMING CHANNELS rather than posts, and is not the sum of the rows under it.
Cite this entry
A live page changes as we take new readings, so a citation should name the measurement it is based on, not just the URL. The line below cites the subscriber count as measured 8 August 2026 — this entry's latest reading, not the date you are reading this.
“Mashhad Security Event | دورهمی امنیت مشهد” (@mashhad_sec_event), 228 subscribers as measured 8 August 2026. Telegram Register, tgregister.com/channel/mashhad_sec_event.
Full measurement history, CC BY 4.0. Every reading this register holds for this entry, not just the latest one, as a dated, downloadable record: CSV · JSON. Free to use with attribution to tgregister.com. Each file carries its own generation timestamp, which is the figure to cite for exactly when the data was retrieved.