A hacker has exploited a vulnerability in TeleMessage to breach the service and steal information, according to reporting by 404 Media. TeleMessage is an Israeli firm that gives modded variations of encrypted messaging apps like Sign and Telegram.
It was revealed final week that former US Nationwide Safety Adviser Mike Waltz used TeleMessage’s modified version of Signal to archive messages. Right this moment’s report indicated the presence of different high-ranking authorities officers in archived chats on the app, together with Marco Rubio, Tulsi Gabbard and Vice President JD Vance.
The unnamed hacker was in a position to entry archived chats, however it doesn’t appear to be they received into any of Waltz’s conversations. The hack does, nevertheless, show that the app’s message archiving service shouldn’t be end-to-end encrypted.
The hacker additionally accessed contact data of presidency officers, login credentials for TeleMessage and information pertaining to the US Customs and Border Safety company. Some companies who use the service, like Coinbase and Scotiabank, had been additionally hacked. 404 Media spoke to the nameless hacker, who mentioned the entire thing solely “took about 15-20 minutes” and that it “wasn’t a lot effort in any respect.” TeleMessage’s parent company Smarsh has but to touch upon the matter.
All of this occurred after Waltz unintentionally revealed he used TeleMessage throughout a cupboard assembly final week. This led folks to query what sort of data was being shared on the app and the way it was being secured. Now we all know it wasn’t secured all that nicely.
TeleMessage gave a statement to Reuters saying that it was “investigating a possible safety incident” and suspending its providers “out of an abundance of warning.”
After all, it’s solely been a couple of weeks since Signalgate, by which it was revealed that prime US officers had been utilizing the messaging app Sign to discuss active combat operations. Previous to the Trump administration, authorities officers usually averted consumer-grade messaging apps to hash out navy plans. As a substitute, they used Delicate Compartmented Data Services (SCIFs) and in-house encrypted communication channels.
Replace, Could 5, 2025, 3:38PM ET: Added an announcement from TeleMessage to verify they’re investigating a safety incident.
This text initially appeared on Engadget at https://www.engadget.com/big-tech/telemessage-a-signal-clone-the-trump-administration-uses-has-been-hacked-183606147.html?src=rss
Trending Merchandise

Thermaltake V250 Motherboard Sync ARGB ATX Mid-Tower Chassis with 3 120mm 5V Addressable RGB Fan + 1 Black 120mm Rear Fan Pre-Installed CA-1Q5-00M1WN-00

Dell KM3322W Keyboard and Mouse

Sceptre Curved 24-inch Gaming Monitor 1080p R1500 98% sRGB HDMI x2 VGA Construct-in Audio system, VESA Wall Mount Machine Black (C248W-1920RN Sequence)

HP 27h Full HD Monitor – Diagonal – IPS Panel & 75Hz Refresh Fee – Clean Display – 3-Sided Micro-Edge Bezel – 100mm Top/Tilt Modify – Constructed-in Twin Audio system – for Hybrid Staff,black

Wi-fi Keyboard and Mouse Combo – Full-Sized Ergonomic Keyboard with Wrist Relaxation, Telephone Holder, Sleep Mode, Silent 2.4GHz Cordless Keyboard Mouse Combo for Laptop, Laptop computer, PC, Mac, Home windows -Trueque
