A security breach has been discovered in TeleMessage, a platform that offers modified versions of encrypted messaging apps, including Signal, Telegram, and WhatsApp, resulting in the exposure of archived messages and sensitive data related to US government officials and companies that utilized the service, according to a report by 404 Media.
TeleMessage recently gained attention last week when it was revealed that former US National Security Adviser Mike Waltz was using the modified version of Signal provided by TeleMessage. The Israel-based company, owned by Smarsh, enables its clients to archive messages, including voice notes, from encrypted applications.
While the messages of cabinet members and Waltz were not compromised, the breached data included message contents, contact information of government officials, backend login credentials for TeleMessage, and other sensitive information, according to 404 Media. The hack also exposed data related to the US Customs and Border Protection, cryptocurrency exchange Coinbase, and financial service providers like Scotiabank.
The security breach revealed that the archived chat logs are not end-to-end encrypted between the modified version of Signal offered by TeleMessage and the storage location of the messages, as reported by 404 Media.
Smarsh, Signal, US Customs and Border Protection, Coinbase, and Scotiabank have not responded to requests for comment at this time.
Source Link