A new attack slips past the latest defenses built into your computer's processor | MIT CSAIL "To show what this means in practice, the team built a working exploit on an AMD system running a current Linux kernel. They first stripped away a defense that scrambles where the operating system sits in memory, succeeding in all ten tries in about nine minutes each. That helped them read protected memory at roughly five b…

Channel
Pegasus NSO & other spyware
@pegasus_nso_n_other_spyware
On this record: Topic · Growth · Engagement · Posts · Citations · Cite this entry
1,085subscribers
+65 since we began measuring on 7 August 2026
Risers and fallers across the register · movement among entries of 1,000–3,162.
Register entry
| Telegram ID | -1001867037632 |
|---|---|
| Type | Channel |
| Username | @pegasus_nso_n_other_spyware |
| Created | Between 1 October 2022 and 30 September 2023 — estimated from Telegram’s id allocation, not measured. How this range is calculated. |
| First recorded | 7 August 2026 |
| Last confirmed live | 18 September 2026 |
| Measurements held | 14 |
| Confirmed unchanged | 1 time, most recently 18 September 2026 |
| On Telegram | t.me/pegasus_nso_n_other_spyware |
Topic
Hacking & security — a classification, not a measurement. An on-box language model (Qwen3.6-35B-A3B-FP8, prompt version 1) read this channel’s own recent posts on 19 September 2026 and assigned it the closest of 31 fixed categories, at 93% confidence. This is a model’s judgement about what the channel is likely to be about, not a fact this register measured the way a subscriber count or a view count is measured — it can be revised on a later pass, and it carries no weight anywhere else on this page. How this classification works, and why it has no browse page of its own yet.
Growth
| Measured (UTC) | Subscribers | Change |
|---|---|---|
| 18 Sept 2026, 02:55 | 1,085 | -3 |
| 14 Sept 2026, 00:00 | 1,088 | +2 |
| 10 Sept 2026, 05:57 | 1,086 | +13 |
| 5 Sept 2026, 03:17 | 1,073 | +8 |
| 1 Sept 2026, 15:43 | 1,065 | +6 |
| 29 Aug 2026, 18:35 | 1,059 | +7 |
| 26 Aug 2026, 21:28 | 1,052 | +2 |
| 23 Aug 2026, 13:07 | 1,050 | +5 |
| 19 Aug 2026, 23:42 | 1,045 | +10 |
| 16 Aug 2026, 18:54 | 1,035 | +4 |
| 13 Aug 2026, 11:25 | 1,031 | +1 |
| 10 Aug 2026, 01:51 | 1,030 | +9 |
| 7 Aug 2026, 07:26 | 1,021 | +1 |
| 7 Aug 2026, 02:46 | 1,020 | first reading |
Engagement
20 posts held, back to 19 March 2026 — the reader has not yet reached the start of this channel’s public history, so older posts may sit further back, unread. Read across 1 page of Telegram’s post history, 20 posts per page.
Nothing published in the last 30 days. ERR and ER are rolling 30-day measures, so there is nothing to compute — we hold 20 posts for this entry, the most recent from 6 August 2026. An engagement rate over an empty window would be a number about nothing.
Recent posts
Israeli spyware vans infiltrate American streets and your phones | Cybernews When the Texas Department of Public Safety purchased 4 brand-new Chevrolet Tahoes for $4.5 million this March, it looked like a routine fleet upgrade. In fact, the cars are equipped with controversial surveillance hardware that can monitor the location of every cell phone in the surrounding area. Privacy activists are alarmed. The tech, m…
Espionage Against the European Parliament: Member of Committee Investigating Spyware Hacked with Pegasus | The Citizen Lab "We found that former Member of the European Parliament Stelios Kouloglou was hacked with Pegasus spyware while serving on the PEGA committee, which investigated Pegasus and other spyware abuses in Europe. Through forensic analysis of his device, we found that the attackers could have had acce…
NSO spyware firm founded in Israel has been targeting Whatsapp users in Jordan and Lebanon with malicious links, despite a US court order forbidding it from doing so, according to Meta. Meta said earlier this week that it had caught and disrupted “spear phishing attempts” by NSO Group on Whatsapp, which had targeted a handful of users in Jordan and Lebanon. The tech giant said it also caught the spyware firm creati…
File, posted without a caption
On Our Telegram MTProto Review — Symbolic Software On May 18, 2026, iStories, part of the OCCRP investigative network, published a piece describing a Symbolic Software technical review of Telegram’s MTProto protocol. The review, titled Telegram’s MTProto: Assessing Deanonymization Potential for a Network Attacker and identified as GNMX-01, was commissioned in 2025 by Global Network Solutions, Inc. (“GNM”), the Teleg…
Reminder : Apple’s new iPhone comes with Israeli chips – and a hailstorm of memes When Apple unveiled its new iPhone 17e — positioned as a “budget” model with better battery life — it unleashed a wave of dark humor online. The reason is because two of the phone’s connectivity chips — the C1X modem and N1 wireless chip — were developed with help from Apple’s R&D center in Israel. Considering Israel’s cyber rap shee…
A 0-click exploit chain for the Pixel 10: When a Door Closes, a Window Opens | Project Zero "We recently published an exploit chain for the Google Pixel 9 that demonstrated it was possible to go from a zero-click context to root on Android in just two exploits. The Dolby 0-click vulnerability existed across all of Android, until it was patched in January 2026. While we had an exploit chain for the Pixel 9, we wante…
Paragon is not collaborating with Italian authorities probing spyware attacks, report says | TechCrunch Last year,WhatsApp and Apple notified several people in Italy, including journalists and activists, that they had been targeted with government spyware. In particular, WhatsApp pointed the finger at the Israeli American surveillance tech maker Paragon Solutions as the company that provided the technology for a hac…
Morpheus: A new Spyware linked to IPS Intelligence |Osservatorio Nessuno We have analyzed a sample of a previously unknown Android spyware, likely developed in Italy. It is named “Morpheus”, version 2025.3.0, and we describe its capabilities, including abusing accessibility features, automatically enabling ADB and issuing commands, disabling microphone and camera indicators, pairing additional WhatsApp devices, taki…
fast16 | Mystery ShadowBrokers Reference Reveals High-Precision Software Sabotage 5 Years Before Stuxnet | SentinelOne SentinelLABS has uncovered a previously undocumented cyber sabotage framework whose core components date back to 2005 fast16.sys selectively targets high-precision calculation software, patching code in memory to tamper with results. By combining this payload with self-propagation mechanisms, the a…
Bad Connection: Uncovering Global Telecom Exploitation by Covert Surveillance Actors | The Citizen Lab Our investigation uncovers two sophisticated telecom surveillance campaigns and, for the first time, links real-world attack traffic to mobile operator signalling infrastructure. The findings expose how suspected commercial surveillance vendors (CSVs) exploit the global telecom interconnect ecosystem, leverage priv…
Showing the 12 most recent of 20 posts we hold for @pegasus_nso_n_other_spyware. View and reaction counts are the latest single reading for each post, not a live figure, and a recent post is still accumulating both. A view count marked ≈ was rounded by Telegram before we ever saw it — t.me prints views in full below 1,000 and to three significant figures above, so ≈1,200,000 means somewhere between 1,150,000 and 1,249,999. Unmarked counts are exact. Text is reproduced from the public post preview and truncated for length.
Forward network
Republished by
Channels on the register that have forwarded this channel's posts into their own feed.
Built only from forwarded posts we have actually read, on both sides. Coverage is early and deliberately incomplete: a missing link means we have not read the post that would prove it, never that the relationship does not exist. Counts are distinct forwarded posts observed, so they only ever go up as we read more.
Mentions
Named by 2 registered channels — every channel on the register whose own posts have named this one, by its current username or any other username it currently holds, merged from two separately captured readings of the same fact so a namer caught by only one of them is not missed and a namer both caught is not counted twice. A username this channel has since dropped is not matched — that handle may belong to someone else now, and crediting today’s namer to yesterday’s owner would misattribute it.
Named by
Channels on the register whose posts name this channel's handle.
Names
Channels on the register whose handles appear in this channel's posts.
A mention is a weaker signal than a forward and is counted separately for that reason — naming a channel is not republishing it, and a handle in a post body is easy to place deliberately. The post counts beside each row below are distinct posts in which the handle appeared, from posts we have read on both sides — the “Named by N registered channels” figure above is a different count, of distinct NAMING CHANNELS rather than posts, and is not the sum of the rows under it.
Cite this entry
A live page changes as we take new readings, so a citation should name the measurement it is based on, not just the URL. The line below cites the subscriber count as measured 18 September 2026 — this entry's latest reading, not the date you are reading this.
“Pegasus NSO & other spyware” (@pegasus_nso_n_other_spyware), 1,085 subscribers as measured 18 September 2026. Telegram Register, tgregister.com/channel/pegasus_nso_n_other_spyware.
Full measurement history, CC BY 4.0. Every reading this register holds for this entry, not just the latest one, as a dated, downloadable record: CSV · JSON. Free to use with attribution to tgregister.com. Each file carries its own generation timestamp, which is the figure to cite for exactly when the data was retrieved.