mastouille.fr est l'un des nombreux serveurs Mastodon indépendants que vous pouvez utiliser pour participer au fédiverse.
Mastouille est une instance Mastodon durable, ouverte, et hébergée en France.

Administré par :

Statistiques du serveur :

689
comptes actifs

#telemessage

2 messages2 participants0 message aujourd’hui
Suite du fil

The breach confirms that messages sent through the altered app were vulnerable during transmission to the archive systems controlled by #TeleMessage's clients. Signal, commenting on the #Israeli clone adopted by the U.S. government, stated it "cannot guarantee the privacy or security properties of unofficial versions of Signal."

After an activist hacker breached #Israeli company #TeleMessage, they revealed that the company had slipped the #Trump administration a modified version of #Signal, later found to be storing official communications without end-to-end encryption. The hacker accessed TeleMessage's backend panel using credentials found in intercepted data, exposing archived chat logs and contact information for U.S. officials.

I've gotta say, this whole #TeleMessage thing puts into pretty stark relief what a steaming pile of bullshit the #infosec product space is.
TM claimed with zero evidence, "You can add us to your secure messaging apps and they'll still be secure!" and high-security orgs needing records retention were like, "Well, they say they're secure, so let's just take their word for it and dive right in!"
Lying infosec vendors and orgs believing them are both endemic.

A répondu dans un fil de discussion

@aho Text-to-landline is different tech to the Israeli->US firm's Signal app offshoot, but it signifies that the mothership firm of #TeleMessage, Messaging International PLC based in Londongrad, was trusted by the russians to cater to the latter's domestic network market, probably at source code level.

I'm certain the MI5 have been looking at that firm and its russian comms business links... 🙄

Or more likely, investigative journalists are on the case.

Then there's been the SigmaRoc PLC "lime and limestone materials group" that curiously bought totally unrelated communications assets... 👀

The gun's not exactly smoking but merely smells of makhorka.

A répondu dans un fil de discussion

@heidilifeldman When I first learned that the Signal copy (?) they used was called "Telemessage" I was fully expecting it to be work by the people who'd created "Telegram"... i.e. russians.

Signal of course is Open Source so building something clonish isn't rocket science, but after tweaks, additions and time any copy is unlikely to be as secure.

Turns out the company claiming to have built it is Israeli (founded in 1999) and the app was sold to some murican finance VC obviously close to MAGA in Feb 2024.

I'm still expecting the MAGA-fostering russians to be lurking somewhere behind the curtain.

#telemessage

en.wikipedia.org/wiki/TeleMess

en.wikipedia.orgTeleMessage - Wikipedia

#SignalGate épisode 372 : l’application #TeleMessage a été hackée

next.ink/brief_article/signalg

Après l’invitation d’un journaliste dans une boucle de discussion Signal, voilà que le conseiller à la sécurité de Donald Trump Michael Waltz se connecte à son compte TeleMessage, sous les yeux des caméras.

[…] L’entreprise israélienne TeleMessage, déclare permettre d’utiliser Signal tout en sauvegardant tous les échanges entrants et sortants à des fins d’archivage.

[…] Or, selon 404 media, TeleMessage a été hackée, permettant aux attaquants de récupérer des conversations de groupe utilisés via ses clones de #Signal, #WhatsApp ou encore #Telegram

NextSignalGate épisode 372 : l'application TeleMessage a été hackée - NextAprès l’invitation d’un journaliste dans une boucle de discussion Signal, voilà que le conseiller à la sécurité de Donald Trump Michael Waltz se connecte à son compte TeleMessage, un clone de l’application de messagerie, sous les yeux des caméras. Le 1er mai, Reuters publiait un cliché d’une réunion du cabinet de Donald Trump. Au premier […]
A répondu dans un fil de discussion

4️⃣ Nun wird es etwas komplizierter. Ihr erinnert euch an #Signalgate?

Phase 1: Ein Journalist wird «aus Versehen» in einen sicherheitskritischen US-Militärchat auf #Signal eingeladen.

Phase 2: Wir lernen, dass derselbe Einlader auch militärische Infos in einem Familienchat teilt.

Phase 3: Wir finden heraus, dass dazu eine modifizierte Version der Signal-App verwendet wird.

Phase 4: Diese Version von #TeleMessage archiviert die Daten unsicher.

Etwas ausführlicher hier:
dnip.ch/2025/05/06/dnip-briefi

Mark Zuckerberg als Graffiti
Das Netz ist politisch · DNIP Briefing #23: Friends & Fiction - Das Netz ist politischDie Redaktion präsentiert jeden Dienstag die Geschichten, die sie bewegt, aufgerüttelt oder zum Nachdenken angeregt hat.
Suite du fil

»Security – Messaging app seen in use by Mike Waltz suspends service after hackers claim breach:
Mike Waltz seemed to use the app at last week's Cabinet meeting, according to a photograph published by Reuters.«

Bye grande bad dilantic clone and yes this is a good example of how security is NOT implemented in software development

👋 nbcnews.com/tech/security/tele

NBC News · App used by Mike Waltz suspends services after hacking claimsPar Kevin Collier
#signal#itsecurity#trump

Please (frantic running in background)
Be (stocks are dumped)
Patient (an admin is just blindly ripping cables)
While (CEO is desperately looking for a CISO to throw in front of a bus)
TeleMessage (Smarsh is distancing itself by trying to yeet TM into the Kuiper Belt)
Suspends “all services” (somebody is screaming “JUST SHUT IT ALL DOWN”!)

wired.com/story/signal-clone-u

WIRED · Signal Clone Used by Mike Waltz Pauses Service After Reports It Got HackedPar Lily Hay Newman