VisaiCyber

VisaiCyber Empowering digital safety through awareness and practical cybersecurity solutions.

01/05/2026

សូមប្រុងប្រយ័ត្នខ្ពស់ File name.exe !!!
នាពេលកន្លងមក នាយកដ្ឋានប្រឆាំងបទល្មើសបច្ចេកវិទ្យា បានផ្សព្វផ្សាយរួចមកហើយ ចំពោះករណីមានជនអនាមិកមានការចែកចាយមេរោគក្នុងទម្រង់ជាប្រភេទ .exe (Executable File) ផ្ញើមកកាន់គណនីអ្នកប្រើប្រាស់ប្រព័ន្ធទំនាក់ទំនងសង្គមតេលេក្រាម (Telegram) ដែលមេរោគប្រភេទនេះអាចលួចទិន្នន័យអ្នកប្រើប្រាស់ ប៉ុន្តែថ្មីៗនេះ នាយកដ្ឋាន សង្កេតឃើញថា ជនអនាមិកបានវិវឌ្ឍន៍ដោយធ្វើការចែកចាយមេរោគប្រភេទដដែលនេះ ដោយប្រើប្រាស់ឈ្មោះឯកសារផ្សេងៗ ដូចជា ឈ្មោះឯកសារដែរនៅខាងចុងនៃឈ្មោះមាន.exe ឬ រូបភាពអំពីការស្លាប់, សន្ទរកថារបស់ថ្នាក់ដឹកនាំ...ជាដើម ធ្វើឱ្យមានការទាក់ទាញអ្នកប្រើប្រាស់ចាប់អារម្មណ៍ ចង់ដឹង ចង់ឮ ឈានទៅដល់ការចុចមើល និងអាចលួចយកទិន្នន័យរបស់អ្នកប្រើប្រាស់តែម្តង។
នាយកដ្ឋាន សូមក្រើនរំលឹកដល់អ្នកប្រើប្រាស់ប្រព័ន្ធទំនាក់ទំនងសង្គមតេលេក្រាម ទាំងអស់ សូម ពិនិត្យប្រភពនៃការផ្ញើ ឬចែកចាយឯកសារផ្សេងៗ និងសូមកុំចុចបើក ឬទាញយរាល់ឯកសារ ប្លែកៗដែលផ្ញើមកពីអ្នកមិនស្គាល់អត្តសញ្ញាណ ជៀសវាងការបាត់បង់ទិន្នន័យ ឬឯកសារនានា។

25/04/2026

គន្លឹះសំខាន់ៗ ដើម្បីការពារគណនី Telegram ឱ្យមានសុវត្ថិភាព!

ថ្មីៗនេះ​ក្រុមការងារ​បច្ចេកទេស​ នៃ​អគ្គនាយកដ្ឋាន​បច្ចេកវិទ្យា​ឌីជីថល​ និង​ផ្សព្វផ្សាយ​អប់រំបាន​សង្កេតឃេីញ​មានជនរងគ្រោះត្រូវបានជនខិលខូច​លួចចូលគ្រប់គ្រង​គណនី Telegram និងបានក្លែងបន្លំជាជនរងគ្រោះ​ដេីម្បី​បទល្មើស​តាម​តាម​បណ្ដាញ​សង្គម​។

ប្រសិនបើលោកអ្នកសង្ស័យថាមានជនអនាមិក កំពុងលួចប្រើប្រាស់ ឬកាន់កាប់គណនី Telegram របស់លោកអ្នក ក្រុមការងារបច្ចេកទេសសូមចែករំលែកវិធីសាស្ត្រ និងគន្លឹះសំខាន់ៗដើម្បីការពារសុវត្ថិភាពគណនី Telegram ដូចខាងក្រោម៖

១. ពិនិត្យលើ Active Sessions
ដើម្បីដឹងអំពីឧបករណ៍ដែលកំពុងបើកប្រើប្រាស់គណនី Telegram របស់អ្នក៖

• ចូលទៅកាន់ Settings > Devices ដើម្បីពិនិត្យទៅលើឈ្មោះឧបករណ៍ដែលកំពុងប្រើប្រាស់។ ប្រសិនបើឃើញឧបករណ៍ខុសប្រក្រតី លោកអ្នកអាចចុចលើពាក្យ "Terminate Session" ឬ "Terminate All Other Sessions"។

២. វិធីពង្រឹងសុវត្ថិភាពគណនី
ដើម្បីការពារកុំឱ្យមានការជ្រៀតចូល លោកអ្នកគួរអនុវត្តដូចខាងក្រោម៖
• បើក Two-Step Verification (2FA)៖ ចូលទៅ Settings > Privacy and Security > Two-Step Verification ដើម្បីកំណត់លេខសម្ងាត់ (Password) បន្ថែម

• ដាក់ Passcode Lock & Face ID៖ ការពារកុំឱ្យអ្នកដែលកាន់កាប់ទូរសព្ទលោកអ្នកផ្ទាល់ បើកចូលកម្មវិធី Telegram បាន
• កុំចុចលើតំណភ្ជាប់ (Link) គ្មានប្រភពច្បាស់លាស់៖ ជៀសវាងការចុចលើ Link ដែលតម្រូវឱ្យអ្នកបញ្ចូលលេខទូរសព្ទ ឬលេខកូដ OTP

៣. សញ្ញាសម្គាល់មិនប្រក្រតីផ្សេងៗ
ក្រៅពីកំណត់ Settings ខាងលើ អ្នកអាចសម្គាល់តាមរយៈសកម្មភាពប្លែកៗដូចជា៖

• ការផ្ញើសារទៅកាន់អ្នកដទៃ ឬចូលរួមក្នុង Group/Channel ប្លែកៗដោយមិនដឹងខ្លួន។
• សារផ្ញើចូលមក មានលោតសញ្ញាថា "អានរួច" ទាំងដែលអ្នកមិនទាន់បានបើកមើល។
• ទទួលបានលេខកូដ Login Code ពី Telegram ជាញឹកញាប់ (បញ្ជាក់ថាមានគេព្យាយាមចូលគណនីរបស់អ្នក)

ចំណាំ៖ ប្រសិនបើអ្នកបាន ‘Terminate’ រួចរាល់ហើយ សូមប្រញាប់ដាក់ Two-Step Verification ភ្លាម ដើម្បីការពារកុំឱ្យជនខិលខូចចូលបានម្ដងទៀត។

Red Team Roadmap 🔴🎯├── Foundations  │   ├── Networking Basics  │   │   ├── TCP/IP & Protocol Exploitation  │   │   ├── D...
19/04/2026

Red Team Roadmap 🔴🎯

├── Foundations
│ ├── Networking Basics
│ │ ├── TCP/IP & Protocol Exploitation
│ │ ├── DNS & DHCP Attacks
│ │ ├── Subnetting & Network Mapping
│ │ └── Topology Enumeration
│ ├── Operating Systems
│ │ ├── Windows
│ │ │ ├── Active Directory Enumeration & Attacks
│ │ │ ├── Group Policy Exploitation
│ │ │ └── Event Log Evasion
│ │ └── Linux
│ │ ├── File Permission Exploits
│ │ ├── Syslog Manipulation
│ │ └── Scripting (Bash, Python, PowerShell)
│ └── Cybersecurity Core
│ ├── Attack Surface Analysis
│ ├── Threat Modeling (MITRE ATT&CK)
│ ├── Exploit Development Basics
│ └── Common Attack Vectors

├── Threat Intelligence
│ ├── OSINT
│ │ ├── Tools (Maltego, Recon-ng, SpiderFoot)
│ │ └── Data Sources (Shodan, Censys, WHOIS)
│ ├── Reconnaissance
│ │ ├── Passive & Active Recon
│ │ ├── Social Engineering Techniques
│ │ └── Target Profiling
│ └── IOCs Evasion
│ ├── Obfuscating IPs, Domains, Hashes
│ └── File Signature Manipulation

├── Offensive Operations
│ ├── Exploitation
│ │ ├── Tools (Metasploit, Cobalt Strike)
│ │ ├── Vulnerability Exploitation (Exploit-DB, Custom Exploits)
│ │ └── Payload Development
│ ├── Post-Exploitation
│ │ ├── Privilege Escalation
│ │ ├── Lateral Movement
│ │ └── Persistence Techniques
│ ├── Evasion
│ │ ├── AV/EDR Bypass
│ │ └── Log Evasion & Obfuscation
│ └── Network Attacks
│ ├── MITM (ARP Spoofing, SSL Stripping)
│ └── Protocol Exploitation

├── Vulnerability Exploitation
│ ├── Vulnerability Discovery
│ │ ├── Tools (Burp Suite, Nmap)
│ │ └── Manual Testing Techniques
│ ├── Exploit Development
│ │ ├── Writing Custom Exploits
│ │ └── Shellcode Basics
│ └── Configuration Exploits
│ ├── Misconfiguration Identification
│ └── Exploiting Weak Configurations

├── Identity & Access Attacks
│ ├── Credential Harvesting
│ │ ├── Phishing & Keylogging
│ │ └── Password Cracking (Hashcat, John the Ripper)
│ ├── Privilege Escalation
│ │ ├── Exploiting Misconfigured RBAC/ABAC
│ │ └── Bypassing MFA/SSO
│ └── Identity Spoofing
│ ├── Token Impersonation
│ └── Account Takeover

├── Network & Architecture Attacks
│ ├── Network Exploitation
│ │ ├── Bypassing VLANs & Firewalls
│ │ └── Attacking Microsegmentation
│ ├── Zero Trust Evasion
│ │ ├── Bypassing Identity Checks
│ │ └── Exploiting Trust Misconfigurations
│ └── Encryption Attacks
│ ├── Weak TLS/SSL Exploitation
│ └── VPN Vulnerabilities

├── Social Engineering
│ ├── Phishing Campaigns
│ │ ├── Email & Vishing Attacks
│ │ └── Payload Delivery
│ └── Pretexting
│ ├── Impersonation Techniques
│ └── Social Engineering Frameworks

├── Compliance & Governance Evasion
│ ├── Audit Evasion
│ │ ├── Bypassing Audit Trails
│ │ └── Log Tampering
│ └── Policy Exploitation
│ ├── Exploiting Weak Policies
│ └── Circumventing Compliance Controls

├── Advanced Offensive Techniques
│ ├── Advanced Persistence
│ │ ├── Rootkits & Backdoors
│ │ └── Living Off the Land (LotL)
│ ├── Adversary Simulation
│ │ ├── Purple Teaming
│ │ └── ATT&CK Framework Emulation
│ └── Custom Tooling

29/03/2026
🧠💻 AI is changing the game — even in hacking.It’s becoming easier for both ethical and unethical hackers to use AI to as...
26/12/2025

🧠💻 AI is changing the game — even in hacking.
It’s becoming easier for both ethical and unethical hackers to use AI to assist in their tasks, even with little knowledge.

Check out this AI tool and remember to use it responsibly and ethically!
👉🏻 https://hackerai.co/

Follow me on telegram where I share more about cybersecurity, news, tools, books, techniques…
https://t.me/visaicyber

19/12/2025
⚠️ ALERT! DON’T CLICK! DON’T DOWNLOAD! ⚠️There has been a large increase in malicious .exe files and phishing links circ...
22/11/2025

⚠️ ALERT! DON’T CLICK! DON’T DOWNLOAD! ⚠️
There has been a large increase in malicious .exe files and phishing links circulating through Telegram and work-related groups.

✍️ Note: an .exe file is a program installer that can secretly install malware, steal your data, take over your accounts, or severely damage your device.

❗️ Warning Signs to Look Out For:
• Any .exe file sharing on telegram is mostly malicious purposes
• Strange or mixed Khmer–English file names
• Links from unknown or unclear sources
• Files shared in groups without explanation or context

🛑 What You MUST Do Immediately:
• Delete, Block, and Report (scam/phishing)
• Confirm with Group Admin before opening unexpected files
• Never open anything you haven’t verified as safe
• Avoid clicking suspicious or shortened links

🔍 To check a link safely:
Copy the link → scan it using:
🔗 VirusTotal — https://www.virustotal.com
It scans links and files for malware and phishing threats.

🔒 Digital security begins with YOU.
👉🏻 Share this to help protect others!
👉🏻 Join my channel to get more security tips and opportunity: https://t.me/visaicyber

————————————————————————

⚠️ កុំចុច! កុំទាញយក! ⚠️

មួយរយះនេះ សម្បូរអ្នកផ្ញើលីង phishing ឬ​មេរោគឯកសារ (.exe) ណាស់តាម Telegram ឬ Group ការងារ។
ឯកសារ .exe គឺជាឯកសារដំឡើងកម្មវិធី (program installer) ដែលអាចដំឡើងមេរោគ, លួចទិន្នន័យ, ចូលដំណើរការគណនី, និងធ្វើឱ្យឧបករណ៍របស់អ្នកខូចខាតធ្ងន់ធ្ងរ។

❗️អ្វីដែលត្រូវពិនិត្យ:
• ឯកសារ .exe តាម Telegram (ស្ទើរតែ 100% គឺបោកប្រាស់)
• ឈ្មោះចម្លែកៗ ឬប្រើអក្សរខ្មែរលាយអង់គ្លេសច្របល់គ្នា អានមិនដាច់
• Links មិនមានប្រភពច្បាស់លាស់ / shortened links
• Files ដែលបញ្ចូនក្នុង Group មិនស្គាល់ ដោយគ្មាន context

🛑 អ្វីដែលត្រូវធ្វើ៖
•​​​​​​ Delete / Block / Report (scam, spam, phishing)
•​ សួរ Admin Group មុននឹងបើកឯកសារដែលមិនច្បាស់លាស់
• មិនបើកអ្វីដែល មិនទាន់ពិនិត្យប្រភព ឬមិនទុកចិត្ត
• ជៀសវាងការចុចលើ link ដែលមានការសង្ស័យ

🔍 ចង់ពិនិត្យ link មុនចុច?
អ្នកអាច copy link ហើយវាយពិនិត្យតាម៖
🔗 VirusTotal — https://www.virustotal.com
វាជាវេបសាយសម្រាប់ scan links និង files ដើម្បីរក malware/phishing។

🔒 ការការពារសុវត្ថិភាពឌីជីថល គឺចាប់ផ្តើមពីអ្នក។
👉🏻 សូមចែករំលែកដើម្បីការពារមិត្តភក្តិ និងមនុស្សជុំវិញអ្នក!

Address

103
Phnom Penh
12070

Website

Alerts

Be the first to know and let us send you an email when VisaiCyber posts news and promotions. Your email address will not be used for any other purpose, and you can unsubscribe at any time.

Share