2024: Telegram founder arrested.

2024: Telegram founder makes deal.

2025: Telegram pwning user devices.

Telegram is compromised.

#Privacy

https://www.mobile-hacker.com/2025/03/05/evilloader-unpatched-telegram-for-android-vulnerability-disclosed/

Reply to this note

Please Login to reply.

Discussion

for the life of me, I don't understand why privacy minded bitcoiners still use TG?

Network effects. Lots of communities still there.

what good is it if it's compromised?

It's difficult to move large crowds to other platforms without fragmentation.

goes to show you

privacy is mostly a larp, and it's not that important

It's very important, but network effects are real and difficult to overcome.

See how Facebook is still a thing?

people using Facebook don't care about privacy

TG was sold as a private coms network

I think they care, but not enough to abandon communities in which they still derive value.

don't assume or make excuses

if words don't meet action, then it's not a real a real concern

Intetacting with you has been unenjoyable. Muting.

wow, I though you were stronger than this

This doesnt't sound like a very scary or impressive exploit.

It sounds like any "bad guy" can just make an HTML file, rename the extension from ".HTML" to ".MP4", and then send it to someone over Telegram, which Telegram believes is a vĂ­deo.

To the recipient, it then appears to be a video until they click it, but it will fail to play in Telegram, and ask if you want to try to play it in an external app.

Only if you click OK, will your phone then open the file in a web browser (because its's actually an HTML file).

Then the bad guy still has to convince you to (with his HTML file) to click a link that downloads an APK file that they want you to install.

You have to be pretty stupid to jump through all the hoops that would eventually end up with you compromising your phone.