Telegram RegisterThe public register of Telegram
Telegram profile photo for Дневник Комбеза

Channel

Дневник Комбеза

@sib_compsec

On this record: Growth · Engagement · Reactions · Posts · Citations · Cite this entry

744subscribers

+25 since we began measuring on 6 August 2026

Risers and fallers across the register · movement among entries of Under 1,000.

Register entry

Telegram ID-1001860294345
TypeChannel
Username@sib_compsec
CreatedBetween 1 October 2022 and 30 September 2023 — estimated from Telegram’s id allocation, not measured. How this range is calculated.
First recorded6 August 2026
Last confirmed live3 September 2026
Measurements held6
Confirmed unchanged1 time, most recently 3 September 2026
On Telegramt.me/sib_compsec

Growth

719744731.56 August 2026 — 719 subscribers6 August 2026 — 719 subscribers14 August 2026 — 728 subscribers20 August 2026 — 735 subscribers26 August 2026 — 737 subscribers3 September 2026 — 744 subscribers6 August 20263 September 2026
6 measurements spanning 28 days, net +25. Dots are measurements; the straight line between them is drawn to join them, not to claim we know the path taken in between — snapshots are recorded only when a count changes, so gaps mean “no change observed”, never “interpolated”. The vertical axis spans 715–748 and does not start at zero.
Measurement log — every subscribers count we have recorded
Measured (UTC)SubscribersChange
3 Sept 2026, 19:57744+7
26 Aug 2026, 23:08737+2
20 Aug 2026, 20:33735+7
14 Aug 2026, 00:14728+9
6 Aug 2026, 16:15719no change
6 Aug 2026, 08:22719first reading

Engagement

15 posts held, back to 25 April 2026the reader has not yet reached the start of this channel’s public history, so older posts may sit further back, unread. Read across 1 page of Telegram’s post history, 20 posts per page.

Nothing published in the last 30 days. ERR and ER are rolling 30-day measures, so there is nothing to compute — we hold 15 posts for this entry, the most recent from 5 August 2026. An engagement rate over an empty window would be a number about nothing.

Reaction mix

154 reactions across 14 posts, in 12 distinct kinds. The most used accounts for 33.1% of them.

Every reaction kind recorded on the sample, most used first
ReactionCountShareShare, drawn
👍5133.1%
4629.9%
🔥2214.3%
😢149.09%
💯85.19%
🤝42.60%
👀21.30%
😁21.30%
🥱21.30%
🗿10.649%
🙈10.649%
🤔10.649%

No sentiment is inferred, and none should be read in. This table is ordered by count and by nothing else. Emoji do not carry stable meaning across languages or communities — 🙏 is thanks in one channel and mourning in another — so we publish which ones were pressed and how often, and pass no judgement on what an audience meant by them.

Precision. Telegram publishes reaction counts per emoji and short-forms each one — 4.34K, 1.2M — so any single kind at or above 1,000 reaches us at three significant figures, and only counts below 1,000 are exact. The shares above are ratios of those figures and carry the same error. This is also why the total here can differ slightly from a reaction total printed elsewhere on the page: both are sums of the same rounded parts, taken over samples with different edges.

Coverage. Reactions were read on 14 of the 15 sampled posts in this sample. Summed by Telegram’s own count on each post — not by adding up the per-emoji breakdown above — those same posts carry 154 reactions in total: the kind of figure the paragraph above means by “a reaction total printed elsewhere on the page”.

Measured over the 15 most recent posts we hold, published 25 April 2026 to 5 August 2026, using the newest reading held for each. Telegram Stars are excluded: they are a payment, not a reaction, and they have their own section.

Recent posts

5 Aug 2026, 19:33 UTC208 views16 reactionsread 6 August 2026
Photo

Нашей команде удалось побывать на Летней Школе CTF😄 Приключение оказалось достаточно увлекательным и захватывающим: на первой смене мы прошлись по базовым уязвимостям в веб приложениях , а на второй устроили целый мобильный заплыв на почти 3 часа (лекция , практика и CTF). Спасибо всем кто принимал участие в наших активностях - вы безумно крутые 😎 Отдельное спасибо организаторам - вы делаете лучшие CTF ивенты с огро

11👍3👀2

18 Jul 2026, 13:31 UTC≈3,580 views21 reactionsread 6 August 2026

Semgrep Rules Последнее время мы с командой всё чаще задумывались о том, что mobsfscan в части своего Semgrep-компонента, мягко говоря, местами глючный и довольно ограниченый. А если попробовать найти достаточно полный набор Semgrep-правил для мобильных приложений, быстро выясняется, что хорошие правила разбросаны по всему необъятному интернету🔞 Поэтому мы решили собрать всё это в одном месте и создали репозиторий

👍12🔥54

23 Jun 2026, 12:39 UTC963 views19 reactionsread 6 August 2026
Photo

Пост для тех кто не боится Очень часто слышу: «Да что с помощью ваших этих мобилок можно сделать?» Сегодня практическая работа именно для таких людей. Вам понадобится: - телефон; - Metasploit; - сеть с нормальной маршрутизацией; - навыки реверса APK — уровня детского сада достаточно. Первое, что вам нужно, — сделать APK со зловредным функционалом. Берём Metasploit и вперёд: msfvenom -p android/meterpreter/reverse

👍114🥱2🗿1🤝1

17 Jun 2026, 13:16 UTC737 views9 reactionsread 6 August 2026
Photo

Традиционное ежегодное мероприятие по получению джеилбрейков объявляется открытым😂

7😁1🙈1

13 Jun 2026, 09:13 UTC772 views4 reactionsread 6 August 2026
Forwarded from @study_security

Нигде не безопасно. Из всех "чайников" мы уже знаем, что существует OWASP top 10 для веб-приложений, но многие ли из вас задумывались, есть ли пересечения с мобилками? А задуматься стоит, ведь мобильное приложение - это по сути тот же веб. Собственно, статья про корреляцию уязвимостей на вебе и мобилках и уникальные проблемы, а так же разбор этих уязвимостей в коде и на схемах. Кто дочитает до конца: 1 - преисполни

🔥4

7 Jun 2026, 07:32 UTC≈1,120 views7 reactionsread 6 August 2026
File

Прочитал книгу «Проект “Феникс”. Роман о том, как DevOps меняет бизнес к лучшему» Это очень понятная история о том, зачем вообще нужны процессы и почему без них любая команда рано или поздно начинает тонуть в хаосе. Главная мысль, которую я вынес: процессы — это не бюрократия ради бюрократии. Нормально построенный процесс помогает команде быстрее двигаться, меньше тушить пожары и лучше понимать, какую ценность она

🔥7

29 May 2026, 07:14 UTC633 views5 reactionsread 6 August 2026
Forwarded from @mobile_appsec_world

Android SELinux Internals Part II: домены, отказы, обходы Ребята из 8ksec наконец-то выпустили вторую часть серии про SELinux на Android! Первая часть была про основы: контексты, чтение политик, sepolicy-inject. Вторая уже про то, как это всё работает в реальности. Разбирается вся цепочка от сертификата подписи APK до SELinux-домена, роль Zygote, как работает installd. Добавили практики: chcon, runcon, как работа

5

27 May 2026, 08:12 UTC697 views11 reactionsread 6 August 2026
Photo

Сраный Burp… Самое неприятное в пентесте мобилок — когда приложение не работает из твоей страны, но посмотреть, куда оно ходит и какие API дёргает, всё равно надо. Мы с коллегой пентестили Flutter-приложение, и мне досталась iOS-часть. А это значит: pinning, сертификаты, прокси, VPN и немного боли. Сначала собрали схему через Burp: iPhone → OpenVPN → iptables DNAT → Burp → интернет Трафик заворачивался, tcpdump по

8👍3

17 May 2026, 09:44 UTC640 views4 reactionsread 6 August 2026
Forwarded from @mobile_appsec_world

iDump: замена frida-ios-dump без Python (но с блекджеком и обходами) Если кому-то нужно было когда-нибудь сдампить приложение с iOS трубки, то первое, что приходит на ум - классический frida-ios-dump. Но с Frida 17+ он сломался и, судя по всему, уже не починится. И вот появился iDump - переосмысление того же подхода, но без всей той боли с pip, зависимостями, правильное версией Python и тд Автор этого шикарного ту

👍4

7 May 2026, 10:41 UTC748 views23 reactionsread 6 August 2026

Я окончательно перестал играть в CTF. Причин, наверное, несколько. Последние полгода я постепенно отключался от этого процесса и переключался на вещи, которые сейчас кажутся мне более интересными и полезными. Для меня CTF всё ещё остаётся офигенным форматом практики. Особенно в обучении: когда мы разрабатываем курсы, тренинги или внутренние соревнования, CTF-задачи отлично помогают закреплять навыки руками. Но вот у

😢147🤔1😁1

4 May 2026, 07:39 UTC659 views1 reactionsread 6 August 2026
Forwarded from @orderofsixangles

Мой пайплайн по анализу андроид приложений: Stage 0 — APK Metadata (apk-info): Мгновенный парсинг (~2мс) манифеста без декомпиляции: пакет, SDK-версии, все permissions, exported-компоненты, подписи (v1/v2/v3), security profile. Уже на этом этапе детектит: debuggable-флаг, v1-only подпись (уязвимость Janus, CVE-2017-13156), привилегированные системные permissions, exported ContentProvider'ы без защиты. Stage 1 — Де

🔥1

Showing the 12 most recent of 15 posts we hold for @sib_compsec. View and reaction counts are the latest single reading for each post, not a live figure, and a recent post is still accumulating both. A view count marked was rounded by Telegram before we ever saw it — t.me prints views in full below 1,000 and to three significant figures above, so ≈1,200,000 means somewhere between 1,150,000 and 1,249,999. Unmarked counts are exact. Text is reproduced from the public post preview and truncated for length.

Forward network

Republished by

Channels on the register that have forwarded this channel's posts into their own feed.

Built only from forwarded posts we have actually read, on both sides. Coverage is early and deliberately incomplete: a missing link means we have not read the post that would prove it, never that the relationship does not exist. Counts are distinct forwarded posts observed, so they only ever go up as we read more.

Mentions

Named by 2 registered channels — every channel on the register whose own posts have named this one, by its current username or any other username it currently holds, merged from two separately captured readings of the same fact so a namer caught by only one of them is not missed and a namer both caught is not counted twice. A username this channel has since dropped is not matched — that handle may belong to someone else now, and crediting today’s namer to yesterday’s owner would misattribute it.

A mention is a weaker signal than a forward and is counted separately for that reason — naming a channel is not republishing it, and a handle in a post body is easy to place deliberately. The post counts beside each row below are distinct posts in which the handle appeared, from posts we have read on both sides — the “Named by N registered channels” figure above is a different count, of distinct NAMING CHANNELS rather than posts, and is not the sum of the rows under it.

Cite this entry

A live page changes as we take new readings, so a citation should name the measurement it is based on, not just the URL. The line below cites the subscriber count as measured 3 September 2026 — this entry's latest reading, not the date you are reading this.

“Дневник Комбеза” (@sib_compsec), 744 subscribers as measured 3 September 2026. Telegram Register, tgregister.com/channel/sib_compsec.

Full measurement history, CC BY 4.0. Every reading this register holds for this entry, not just the latest one, as a dated, downloadable record: CSV · JSON. Free to use with attribution to tgregister.com. Each file carries its own generation timestamp, which is the figure to cite for exactly when the data was retrieved.