0

    ‘High-risk’ Telegram vulnerability exposes users to attacks — CertiK

    2024.04.09 | exchangesranking | 52onlookers
    1205f261>

    A major vulnerability on Telegram messenger is exposing users to malicious attacks, according to a new report released by the blockchain security firm CertiK.

    CertiK Alert took to the social media platform X on April 9 to warn the public against a “high-risk vulnerability in the wild,” potentially allowing hackers to deploy a remote code execution (RCE) attack through Telegram’s media processing.

    According to the post, CertiK’s team has discovered a “possible RCE” attack in Telegram’s media processing on Telegram Desktop application.

    “This issue exposes users to malicious attacks through specially crafted media files, such as images or videos,” CertiK wrote.

    In order to avoid the vulnerability, users should check their Telegram Desktop configuration and disable the auto-download feature. The feature can be disabled by going to “Settings” and then tapping on “Advanced.”

    Source: CertiK

    “Under the ‘Automatic Media Download’ section, disable auto-download for ‘Photos’, ‘Videos’, and ‘Files’ across all chat types (Private chats, groups, and channels),” CertiK noted.

    Cointelegraph approached CertiK and Telegram for a comment regarding the new Telegram’s vulnerability but did not receive a response at the time of publication.

    This is a developing story, and further information will be added as it becomes available.

    The content on this website comes from the Internet. Due to the inconvenience of proofreading the authenticity and accuracy of the copyright or content of some content, it may be temporarily impossible to confirm the authenticity and accuracy of the copyright or content. For copyright issues or other ssues caused by this, please Call or email this site. It will be deleted or changed immediately after verification.