Primary Country (Mandatory)

Other Country (Optional)

Set News Language for United States

Primary Language (Mandatory)
Other Language[s] (Optional)
No other language available

Set News Language for World

Primary Language (Mandatory)
Other Language(s) (Optional)

Set News Source for United States

Primary Source (Mandatory)
Other Source[s] (Optional)

Set News Source for World

Primary Source (Mandatory)
Other Source(s) (Optional)
  • Countries
    • India
    • United States
    • Qatar
    • Germany
    • China
    • Canada
    • World
  • Categories
    • National
    • International
    • Business
    • Entertainment
    • Sports
    • Special
    • All Categories
  • Available Languages for United States
    • English
  • All Languages
    • English
    • Hindi
    • Arabic
    • German
    • Chinese
    • French
  • Sources
    • India
      • AajTak
      • NDTV India
      • The Hindu
      • India Today
      • Zee News
      • NDTV
      • BBC
      • The Wire
      • News18
      • News 24
      • The Quint
      • ABP News
      • Zee News
      • News 24
    • United States
      • CNN
      • Fox News
      • Al Jazeera
      • CBSN
      • NY Post
      • Voice of America
      • The New York Times
      • HuffPost
      • ABC News
      • Newsy
    • Qatar
      • Al Jazeera
      • Al Arab
      • The Peninsula
      • Gulf Times
      • Al Sharq
      • Qatar Tribune
      • Al Raya
      • Lusail
    • Germany
      • DW
      • ZDF
      • ProSieben
      • RTL
      • n-tv
      • Die Welt
      • Süddeutsche Zeitung
      • Frankfurter Rundschau
    • China
      • China Daily
      • BBC
      • The New York Times
      • Voice of America
      • Beijing Daily
      • The Epoch Times
      • Ta Kung Pao
      • Xinmin Evening News
    • Canada
      • CBC
      • Radio-Canada
      • CTV
      • TVA Nouvelles
      • Le Journal de Montréal
      • Global News
      • BNN Bloomberg
      • Métro
How hackers exploited a Telegram weakness to send malware file via chat

How hackers exploited a Telegram weakness to send malware file via chat

The Hindu
Thursday, July 25, 2024 10:54:56 AM UTC

A report found a weakness in the Telegram app which was then exploited by hackers to send malicious files via chat.

A critical security flaw in the encrypted messaging app Telegram was reportedly exploited by attackers to spread malicious files as harmless-looking videos. Called EvilVideo, the flaw was found in the mobile app for Android and allowed malicious actors to embed malware within videos. The exploit appeared for sale on an underground forum on June 6, 2024, according to ESET’s research team, after which the app disclosed it on June 26. The issue was finally addressed by Telegram in version 10.14.5 released on July 11. 

Attackers were able to hide a malicious APK file in a 30-second clip which when clicked on showed a warning saying that the video couldn’t be played and urged them to play it on an external player. When they proceed, users will be asked to okay an installation of an APK file called ‘xHamster Premium Mod,’ through Telegram. 

Security researcher Lukas Stefanko explained in a blog that attackers used Telegram’s API to make the payload and that by default media received via Telegram download automatically. So, users will find the malicious payload downloaded as soon as they open the conversation. 

While there’s still no news around the culprits of the attack, it is known that the same actor advertised a fully undetectable Android crypter that can reportedly bypass Google Play Protect. 

(For top technology news of the day, subscribe to our tech newsletter Today’s Cache)

A spokesperson for the app responded to the ESET report saying the exploit wasn’t a vulnerability on Telegram since it would require users to manually open the video and install the app. They noted that they had received a report about the exploit on July 5 and deployed a server-fix on July 9 on all versions.

A couple of days ago, the company’s founder Pavel Durov said that they’ve touched 950 million active users and aims to cross the 1 billion mark this year. Telegram also plans to launch an app store and an in-app browser with support for Web3 pages later this month. 

Read full story on The Hindu
Share this story on:-
More Related News
Part of Aruppukottai West Bypass road opened for public use

Part of Aruppukottai West Bypass road opened for public use

Lokesh urges Centre to permit CSR funding for R&D in institutions

Lokesh calls on the Centre to permit CSR funding for R&D in educational institutes, supporting Andhra's Quantum Valley initiative.

Naidu inaugurates Kanuri–GMCANA mother and child care centre at Guntur GGH

Chief Minister Naidu inaugurates the Kanuri-GMCANA Mother and Child Care Centre in Guntur, enhancing maternal and child healthcare.

Farmers urge immediate survey of failed paddy crop

Farmers urge immediate survey of failed paddy crop

Vizag Mayor alleges attack on him during GVMC Council meeting, blames Botcha

Vizag Mayor Peela Srinivasa Rao claims he was attacked during a GVMC meeting, blaming YSRCP leader Botcha Satyanarayana.

Confident Group chariman C.J. Roy’s death sends shock waves through Kerala

C.J. Roy's tragic death shocks Kerala, marking a poignant moment for Confident Group's 20th anniversary and its employees.

Traffic curbs in place for India-New Zealand T20I match

Traffic restrictions and parking arrangements announced for the India-New Zealand T20I match in Thiruvananthapuram from 2 p.m. to midnight.

Annual farm fest begins at Botanical garden

Join the 36th Annual Farm Fest at Puducherry's Botanical Garden, featuring 40,000 flowering plants and organic farming events.

MP directs Adani Total Gas to immediately set up mother CNG station in Udupi

Udupi-Chikkamagaluru Member of Parliament Kota Srinivas Poojary on Friday, directed M/s Adani Total Gas Ltd., (ATGL) that has license to provide piped natural gas for households and compressed natural gas to automobiles to immediately set up a mother station in Udupi

DGP reviews security arrangements at Medaram jatara, highlights AI-led policing

DGP reviews security arrangements at Medaram jatara, highlights AI-led policing

Webinar on recent advancements in cancer care to be held on February 3

Join our February 3 webinar on cancer treatment advancements, featuring expert insights and discussions for patients and caregivers.

Vinex Degree College wins The Hindu FIC - IPE College Quiz

Vinex Degree College triumphs at The Hindu FIC - IPE College Quiz, securing top two positions in a competitive event.

NCB busts clandestine drug manufacturing lab in Mysuru

NCB uncovers a sophisticated drug lab in Mysuru linked to a major trafficking syndicate, seizing drugs worth ₹10 crore.

CPI(M) demands continuation of old MGNREGA scheme

CPI(M) activists in Ongole demand the continuation of the old MGNREGA scheme to ensure financial security for rural communities.

Delhi car blast: Terror module wanted to target global coffee chain outlets

The group of doctors arrested in connection with the November 10 Red Fort car-borne suicide attack that killed over a dozen people, were allegedly conspiring to bomb the outlets of a global coffee chain, whose founder is a Jew, a source in the government told The Hindu.

British Council’s physical library in Chennai turns its last page

A communication from British Council Chennai notes the physical library shuts down on February 15. Library services will however continue in an enhanced digital format. In a larger development, the Council will be shifting to a new space, relinquishing its famous address, 737 Anna Salai

Neelambur junction in Coimbatore reels under traffic snarls during evening hours

Neelambur junction in Coimbatore faces severe evening traffic congestion, prompting calls for immediate management and infrastructure improvements.

Sunetra Pawar to be the first woman Deputy Chief Minister of Maharashtra

Sunetra Pawar is set to become Maharashtra's first woman Deputy Chief Minister amid ongoing discussions about NCP leadership and reunification.

Karnataka bans tobacco-related advertisements on RTC buses after public backlash

Following public outrage over tobacco-related advertisements on State-run buses, Karnataka Transport Minister Ramalinga Reddy on Friday directed all road transport corporations in the State to immediately stop carrying advertisements linked to tobacco products and remove those already displayed.

Resurvey 2.0 should be error free, says A.P. Revenue Minister

A.P. Revenue Minister Anagani Satya Prasad demands an error-free Resurvey 2.0 to build trust among farmers.

Villagers block stretch near Tirupattur in protest against non-stop operation of lorries to stone quarry

Residents in Tirupattur protest against lorries' 24x7 operation to a stone quarry, demanding closure for safety and environmental concerns.

Farmers complain about brick kilns operating in violation of rules

Farmers complain about brick kilns operating in violation of rules

Inter-district thief involved in theft of bags in KSRTC buses arrested

The Barke police have arrested a 44-year-old Madikeri resident allegedly involved in 12 crimes, including seven theft cases of bags of passengers travelling in KSRTC buses

Gross enrolment ratio should go up in higher education: T.G. Sitharam

T.G. Sitharam emphasizes the need for increased gross enrolment in higher education to achieve India's vision of 'Viksit Bharat' by 2047.

Mangled cars to be displayed to remind drivers against over-speeding

Mangled cars to be displayed to remind drivers against over-speeding

© 2008 - 2026 Webjosh  |  News Archive  |  Privacy Policy  |  Contact Us