Hackers are actively targeting a vulnerability in TeleMessage, a messaging app associated with high-ranking officials. This flaw, originally revealed in May, allows access to sensitive data including usernames and passwords. GreyNoise, a cybersecurity firm, reported numerous efforts to exploit this issue and highlighted the ease of the attack. In July, the U.S. Cybersecurity and Infrastructure Security Agency added this vulnerability to its database of known exploited vulnerabilities, signaling that hackers are successfully taking advantage of this exploit.
I was left in disbelief at the simplicity of this exploit. After some digging, I found that many devices are still open and vulnerable to this.
If hackers are able to exploit the vulnerability against their targets, they could access plaintext usernames, passwords, and other sensitive data.
Collection
[
|
...
]