Forwarded from Pavel Durov
In May, I predicted that backdoors in WhatsApp would keep getting discovered, and one serious security issue would follow another, as it did in the past [1]. This week a new backdoor was quietly found in WhatsApp [2]. Just like the previous WhatsApp backdoor and the one before it, this new backdoor made all data on your phone vulnerable to hackers and government agencies. All a hacker had to do was send you a video – and all your data was at the attacker’s mercy [3].
WhatsApp doesn’t only fail to protect your WhatsApp messages – this app is being consistently used as a Trojan horse to spy on your non-WhatsApp photos and messages. Why would they do it? Facebook has been part of surveillance programs long before it acquired WhatsApp [4][5]. It is naive to think the company would change its policies after the acquisition, which has been made even more obvious by the WhatsApp founder’s admission regarding the sale of WhatsApp to Facebook: “I sold my users’ privacy” [6].
Following the discovery of this week’s backdoor, Facebook tried to confuse the public by claiming they had no evidence that the backdoor had been exploited by hackers [7]. Of course, they have no such evidence – in order to obtain it, they would need to be able to analyze videos shared by WhatsApp users, and WhatsApp doesn’t permanently store video files on its servers (instead, it sends unencrypted messages and media of the vast majority of their users straight to Google’s and Apple’s servers [8]). So – nothing to analyze – “no evidence”. Convenient.
But rest assured, a security vulnerability of this magnitude is bound to have been exploited – just like the previous WhatsApp backdoor had been used against human rights activists and journalists naive enough to be WhatsApp users [9][10]. It was reported in September that the data obtained as a result of the exploitation of such WhatsApp backdoors will now be shared with other countries by US agencies [11][12].
Despite this ever-increasing evidence of WhatsApp being a honeypot for people that still trust Facebook in 2019, it might also be the case that WhatsApp just accidentally implements critical security vulnerabilities across all their apps every few months. I doubt that – Telegram, a similar app in its complexity, hasn’t had any issues of WhatsApp-level severity in the six years since its launch. It’s very unlikely that anyone can accidentally commit major security errors, conveniently suitable for surveillance, on a regular basis.
Regardless of the underlying intentions of WhatsApp’s parent company, the advice for their end-users is the same: unless you are cool with all your photos and messages becoming public one day, you should delete WhatsApp from your phone.
[1] – Why WhatsApp will never be secure
[2] – WhatsApp users urged to update app immediately over spying fears
[3] – WhatsApp Android and iOS users are now at risk from malicious video files
[4] – Everything you need to know about PRISM
[5] – NSA taps data from 9 major Net firms
[6] – WhatsApp co-founder Brian Acton: 'I sold my users' privacy'
[7] – Hackers can use a WhatsApp flaw in the way it handles video to take control of your phone
[8] – WhatsApp is storing unencrypted backup data on Google Drive
[9] – WhatsApp hack led to targeting of 100 journalists and dissidents
[10] – Exclusive: Government officials around the globe targeted for hacking through WhatsApp - sources
[11] – Police can access suspects’ Facebook and WhatsApp messages in deal with US
[12] – Facebook, WhatsApp Will Have to Share Messages With U.K.
WhatsApp doesn’t only fail to protect your WhatsApp messages – this app is being consistently used as a Trojan horse to spy on your non-WhatsApp photos and messages. Why would they do it? Facebook has been part of surveillance programs long before it acquired WhatsApp [4][5]. It is naive to think the company would change its policies after the acquisition, which has been made even more obvious by the WhatsApp founder’s admission regarding the sale of WhatsApp to Facebook: “I sold my users’ privacy” [6].
Following the discovery of this week’s backdoor, Facebook tried to confuse the public by claiming they had no evidence that the backdoor had been exploited by hackers [7]. Of course, they have no such evidence – in order to obtain it, they would need to be able to analyze videos shared by WhatsApp users, and WhatsApp doesn’t permanently store video files on its servers (instead, it sends unencrypted messages and media of the vast majority of their users straight to Google’s and Apple’s servers [8]). So – nothing to analyze – “no evidence”. Convenient.
But rest assured, a security vulnerability of this magnitude is bound to have been exploited – just like the previous WhatsApp backdoor had been used against human rights activists and journalists naive enough to be WhatsApp users [9][10]. It was reported in September that the data obtained as a result of the exploitation of such WhatsApp backdoors will now be shared with other countries by US agencies [11][12].
Despite this ever-increasing evidence of WhatsApp being a honeypot for people that still trust Facebook in 2019, it might also be the case that WhatsApp just accidentally implements critical security vulnerabilities across all their apps every few months. I doubt that – Telegram, a similar app in its complexity, hasn’t had any issues of WhatsApp-level severity in the six years since its launch. It’s very unlikely that anyone can accidentally commit major security errors, conveniently suitable for surveillance, on a regular basis.
Regardless of the underlying intentions of WhatsApp’s parent company, the advice for their end-users is the same: unless you are cool with all your photos and messages becoming public one day, you should delete WhatsApp from your phone.
[1] – Why WhatsApp will never be secure
[2] – WhatsApp users urged to update app immediately over spying fears
[3] – WhatsApp Android and iOS users are now at risk from malicious video files
[4] – Everything you need to know about PRISM
[5] – NSA taps data from 9 major Net firms
[6] – WhatsApp co-founder Brian Acton: 'I sold my users' privacy'
[7] – Hackers can use a WhatsApp flaw in the way it handles video to take control of your phone
[8] – WhatsApp is storing unencrypted backup data on Google Drive
[9] – WhatsApp hack led to targeting of 100 journalists and dissidents
[10] – Exclusive: Government officials around the globe targeted for hacking through WhatsApp - sources
[11] – Police can access suspects’ Facebook and WhatsApp messages in deal with US
[12] – Facebook, WhatsApp Will Have to Share Messages With U.K.
Forwarded from Pavel Durov
Telegram keeps growing at a rate of ~50% annually in DAU. This extraordinary growth, unfortunately, still comes with certain growing pains.
Yesterday from 1PM to 2PM GMT about 15% of users who were online at that time experienced connection issues on Telegram. This disruption mainly affected users from Germany, Iraq, Uzbekistan, Russia, Ukraine, Kazakhstan and Belarus.
We apologize for each of the messages we failed to deliver during that hour. We are striving to make our platform as reliable as possible. We are proud that, even despite some attempts to disrupt its availability (like the DDoS from China in June), every year Telegram becomes less prone to such issues.
Yesterday from 1PM to 2PM GMT about 15% of users who were online at that time experienced connection issues on Telegram. This disruption mainly affected users from Germany, Iraq, Uzbekistan, Russia, Ukraine, Kazakhstan and Belarus.
We apologize for each of the messages we failed to deliver during that hour. We are striving to make our platform as reliable as possible. We are proud that, even despite some attempts to disrupt its availability (like the DDoS from China in June), every year Telegram becomes less prone to such issues.
Forwarded from Pavel Durov
For the past several years, we’ve been fighting the spread of terrorist content on Telegram. We’ve been doing it in a way that is consistent with our values and Privacy Policy. While some pundits quite irresponsibly suggested that absolute privacy and counter-terrorism efforts are mutually exclusive, the success of our regular anti-terror actions prove that this is not the case.
Yesterday Europol recognized our continuous efforts in their statement:
Yesterday Europol recognized our continuous efforts in their statement:
“Telegram is no place for violence, criminal activity and abusers. The company has put forth considerable effort to root out the abusers of the platform by both bolstering its technical capacity in countering malicious content and establishing close partnerships with international organisations such as Europol.This follows another Europol report dedicated to the Referral Action Day, in which several tech companies including Telegram took part:
Thanks to this collaboration, the already-existing content referral tools available to Telegram’s users have been strengthened and expanded. Now, any user is able to refer and classify the content they find inappropriate and violent via the referral feature in public groups and channels. In addition, new technical developments, such as the advanced automated content detection system, continue to strengthen Telegram’s effort in obliterating extremism on the platform even further.”
“Whilst Google and Instagram deployed resilience mechanisms across their services, Telegram was the online service provider receiving most of the referral requests during this Action Day. As a result, a significant portion of key actors within the IS network on Telegram was pushed away from the platform.As I have made clear before, ISIS and their likes will have hard time on Telegram if they continue to spread their message of violence and hatred. After the ISIS attacks in Europe we have zero tolerance for their propaganda on our platform. At the same time, we’ll continue to defend our users' absolute right to privacy like no other service, proving that you don’t have to sacrifice privacy for security. You can – and should – enjoy both.
In the past year and a half, Telegram has also put forth considerable effort to root out the abusers of the platform by both bolstering its technical capacity in countering malicious content and by establishing a close partnership with Europol.”
Telegram
ISIS Watch
This channel publishes daily updates on banned terrorist content. Report content via the in-app button or by emailing abuse@telegram.org
Forwarded from Telegram Info English
The "Telegram has been hacked" hype train isn't stopping.
Group-IB, a company specializing in cyber attack prevention, issued a press release about a variety of incidents of illegal access to Telegram accounts on Android and iOS devices, all of which happened on different mobile carriers.
In all cases, the victims' accounts were accessed via SMS.
In other words, once attackers get ahold of a SIM-card, they have access to all messengers, social networks, email accounts, miscellaneous services, and mobile banking apps on that SIM-card where the only authentication method is SMS.
These "hacking" attempts aren't novel either, happening in 2016 and even in 2019.
If you want to defend yourself and your account from hacking, enable Two-step verification in the "Privacy and Security" tab of Telegram's settings.
For more information about two-step verification, read our article about Telegram's security measures.
#hack
Group-IB, a company specializing in cyber attack prevention, issued a press release about a variety of incidents of illegal access to Telegram accounts on Android and iOS devices, all of which happened on different mobile carriers.
In all cases, the victims' accounts were accessed via SMS.
In other words, once attackers get ahold of a SIM-card, they have access to all messengers, social networks, email accounts, miscellaneous services, and mobile banking apps on that SIM-card where the only authentication method is SMS.
These "hacking" attempts aren't novel either, happening in 2016 and even in 2019.
If you want to defend yourself and your account from hacking, enable Two-step verification in the "Privacy and Security" tab of Telegram's settings.
For more information about two-step verification, read our article about Telegram's security measures.
#hack
Forwarded from Telegram Info English
Is two-step verification enabled on your Telegram account?
Anonymous Poll
82%
Yes
14%
No
3%
I'll enable it now
2%
Never heard of it before
Forwarded from Pavel Durov
Recent events showed once again that all WhatsApp users are at risk. My thoughts – https://telegra.ph/Why-Using-WhatsApp-Is-Dangerous-01-30-4
Telegraph – Pavel Durov
Why Using WhatsApp Is Dangerous
A few months ago I wrote about a WhatsApp backdoor that allowed hackers to access all data on any phone running WhatsApp [1]. Facebook, its parent company, claimed at the time that they had no proof the flaw had ever been used by attackers [2]. Last week…
TelelightPro-2_0-Release-Beta-4.apk
60.8 MB
Latest beta of telelight pro based on tg 5.14. since this is beta version, bugs can be expected. So use it at your own risk.
Tg Cloud Manager.apk
14.2 MB
This is
Save Your Files to UNLIMITED PRIVATE STORAGE in TELEGRAM, its like Google Drive For Telegram but with unlimited Storage Space.
After installing this app and login ,
all the files that you send to @getPublicLinkBot will be saved in this App, you can then cut/paste or rename the files and organize the files in folders.
This way you can have the files always and forever, and you can generate the save to drive also. by clicking the download from the App.
Telegram Cloud File Manager
powered by @getPublicLinkBot,Save Your Files to UNLIMITED PRIVATE STORAGE in TELEGRAM, its like Google Drive For Telegram but with unlimited Storage Space.
After installing this app and login ,
all the files that you send to @getPublicLinkBot will be saved in this App, you can then cut/paste or rename the files and organize the files in folders.
This way you can have the files always and forever, and you can generate the save to drive also. by clicking the download from the App.
Note: To move or rename file, LONG press on the file.
jfw_unigram.exe
135 KB
Translated from fa - persian to en - english
#Script #unigram for #jazz
By installing this script, you will be able to:
حرکت Move between shortcuts, contacts, contacts, and settings with shortcut keys.
. Easily switch between chat list and message type.
راحتی Easily access the routing button from anywhere on the screen.
. Find out who is typing on the talk page.
راحتی Easily play audio messages in the Unigram file player system, move in voice messages, change playback speed, and stop audio messages from anywhere.
■ Read chat messages via script without going to the list of messages.
بهتر Use better tags for some Telegram buttons.
. @ ShaberoshanIR
Translated with ❤️ by @lang_translate_bot
#Script #unigram for #jazz
By installing this script, you will be able to:
حرکت Move between shortcuts, contacts, contacts, and settings with shortcut keys.
. Easily switch between chat list and message type.
راحتی Easily access the routing button from anywhere on the screen.
. Find out who is typing on the talk page.
راحتی Easily play audio messages in the Unigram file player system, move in voice messages, change playback speed, and stop audio messages from anywhere.
■ Read chat messages via script without going to the list of messages.
بهتر Use better tags for some Telegram buttons.
. @ ShaberoshanIR
Translated with ❤️ by @lang_translate_bot
Tg news and tutorials
jfw_unigram.exe
I got it from another group. I didn't test it.
So use it in yours risk
So use it in yours risk
Forwarded from Pavel Durov
This month we have verified and promoted 17 official news sources, representing Ministries of Health in 17 countries (the constantly growing list is available in @corona). We did this as part of our anti-covid19 initiative announced in early April. While Telegram is not exactly famous for cooperating with government officials, we decided to make one exception globally to help spread information about the virus.
The current pandemic is a threat to our entire species. When it ends, the world will not return to normal. We may witness a civilizational shift that will ripple through generations. It is up to all of us to ensure that the new world about to be born is a better place than the one we're leaving behind.
This is a chance for people to use their time in isolation to create a better version of themselves – and a chance for technology to prove its worth for humanity. I believe we at Telegram should do all we can not only to help contain the pandemic and combat the spread of unverified information – but also to find new ways of moving forwards.
For this reason, in addition to providing informational support, we’ll try to contribute to tackling the problem of education under lockdown. We also have several other anti-covid19 projects in the works at Telegram.
I will announce more details in the next few days on the Telegram Blog.
Stay tuned. And stay safe.
The current pandemic is a threat to our entire species. When it ends, the world will not return to normal. We may witness a civilizational shift that will ripple through generations. It is up to all of us to ensure that the new world about to be born is a better place than the one we're leaving behind.
This is a chance for people to use their time in isolation to create a better version of themselves – and a chance for technology to prove its worth for humanity. I believe we at Telegram should do all we can not only to help contain the pandemic and combat the spread of unverified information – but also to find new ways of moving forwards.
For this reason, in addition to providing informational support, we’ll try to contribute to tackling the problem of education under lockdown. We also have several other anti-covid19 projects in the works at Telegram.
I will announce more details in the next few days on the Telegram Blog.
Stay tuned. And stay safe.
Telegram
Coronavirus News and Verified Channels
Channels are a tool for broadcasting your public messages to large audiences. They offer a unique opportunity to reach people directly, sending a notification to their phones with each post.
BGram T6.0.1-B6.8.2:
Stable
-Option for disable TOR notification removed.
-App was removed from forced dark mode.
BGram T6.0.1-B6.8.0:
‼️Note:
This version has major changes in codes, it is suggested to clean install.
By installing this version all BGram settings, e.g. tabs, hidden chats, favourite chats, etc. will be reverted to stock.
Do not restore the old backups, since they won’t work.
Also, hidden reading removed according to Telegram request.
• Source code updated to Telegram 6.0.1.
• Tor codes and engine updated to Tor-0.4.2.5-rc.
• Translation API in mini, full screen and text editor item.
• Direct chats: now you can make new folder and set it as Direct chats, which will be shown in sidebar and as a tab. Syncing is supported.
• Folder limitation had been increased, but only initial 10 folders will be synced.
• Set custom icon for tabs.
• Show or hide All tab.
• Icon and text for tab all.
• Swipe up and down actions for floating button.
• Ability to disable go to next photo by edge tapping.
• Ability to replace the New Message button with Saved Messages.
• Maps preview forced to use Yandex.
• Remove single item from search history.
• Hide proxy sponsor.
• Buttons for sending photo as a file and without grouping in attach panel.
• Add member now moved to 3-dot menu in profile.
• Pins are revert back to 5 pins for main tab.
Download
#new_version #stable #update
@BGramChannel
@BGramOfficial
Stable
-Option for disable TOR notification removed.
-App was removed from forced dark mode.
BGram T6.0.1-B6.8.0:
‼️Note:
This version has major changes in codes, it is suggested to clean install.
By installing this version all BGram settings, e.g. tabs, hidden chats, favourite chats, etc. will be reverted to stock.
Do not restore the old backups, since they won’t work.
Also, hidden reading removed according to Telegram request.
• Source code updated to Telegram 6.0.1.
• Tor codes and engine updated to Tor-0.4.2.5-rc.
• Translation API in mini, full screen and text editor item.
• Direct chats: now you can make new folder and set it as Direct chats, which will be shown in sidebar and as a tab. Syncing is supported.
• Folder limitation had been increased, but only initial 10 folders will be synced.
• Set custom icon for tabs.
• Show or hide All tab.
• Icon and text for tab all.
• Swipe up and down actions for floating button.
• Ability to disable go to next photo by edge tapping.
• Ability to replace the New Message button with Saved Messages.
• Maps preview forced to use Yandex.
• Remove single item from search history.
• Hide proxy sponsor.
• Buttons for sending photo as a file and without grouping in attach panel.
• Add member now moved to 3-dot menu in profile.
• Pins are revert back to 5 pins for main tab.
Download
#new_version #stable #update
@BGramChannel
@BGramOfficial
Forwarded from Pavel Durov
Today is a sad day for us here at Telegram. We are announcing the discontinuation of our blockchain project. Below is a summary of what it was and why we had to abandon it.
https://telegra.ph/What-Was-TON-And-Why-It-Is-Over-05-12
https://telegra.ph/What-Was-TON-And-Why-It-Is-Over-05-12
Telegraph – Pavel Durov
What Was TON And Why It Is Over
For the last 2,5 years some of our best engineers have been working on a next-generation blockchain platform called TON and a cryptocurrency we were going to name Gram. TON was designed to share the principles of decentralization pioneered by Bitcoin and…
🆕 Telegram 6.2
New Media Editor, Better GIFs, and More
Media Editor
• Tap the brush icon when sending a photo or video to access the media editor.
• Enhance media quality, tweak parameters like brightness, saturation, etc.
• Add drawings, text, or stickers to media.
• Put animated stickers on photos or videos. Photos with animated stickers automatically turn into GIFs.
• Zoom in on photos or videos for high-precision drawing.
New GIF panel
• Enjoy greatly enhanced loading times for GIFs in the panel.
• Quickly find GIFs in emoji-based sections covering the most popular emotions.
• Check the Trending Tab for the top reactions of the day.
• Press and hold on any GIF in search results to save it to your collection.
Sleeker Interfaces
• Send, edit, and delete messages with new smooth animations.
• Watch videos from an improved player: controls disappear after 3 seconds, long captions get out of your way quickly, videos shorter than 30 seconds are looped.
• Manage Telegram cache settings in style.
• Watch out for the nosey monkey when you set a Two-Step Verification password.
Flexible Folders
• Hold on a chat in your chat list to add it to a folder.
- BLOG, SOURCE CODE & FILE
New Media Editor, Better GIFs, and More
Media Editor
• Tap the brush icon when sending a photo or video to access the media editor.
• Enhance media quality, tweak parameters like brightness, saturation, etc.
• Add drawings, text, or stickers to media.
• Put animated stickers on photos or videos. Photos with animated stickers automatically turn into GIFs.
• Zoom in on photos or videos for high-precision drawing.
New GIF panel
• Enjoy greatly enhanced loading times for GIFs in the panel.
• Quickly find GIFs in emoji-based sections covering the most popular emotions.
• Check the Trending Tab for the top reactions of the day.
• Press and hold on any GIF in search results to save it to your collection.
Sleeker Interfaces
• Send, edit, and delete messages with new smooth animations.
• Watch videos from an improved player: controls disappear after 3 seconds, long captions get out of your way quickly, videos shorter than 30 seconds are looped.
• Manage Telegram cache settings in style.
• Watch out for the nosey monkey when you set a Two-Step Verification password.
Flexible Folders
• Hold on a chat in your chat list to add it to a folder.
- BLOG, SOURCE CODE & FILE
Telegram
Video Editor, Animated Photos, Better GIFs and More
In 2015, Telegram released the most powerful photo editor to be implemented in a messaging app, letting you enhance image quality and add drawings, stickers and text to pictures. Today we're upgrading the media editor with support for animated stickers and…
Forwarded from Unigram News (Fela Ameghino)
🔥 New version for Unigram
Build 4.0, the biggest release so far
What's new:
• Chat folders.
• Stream Videos and Audio files.
• Improved stickers, GIFs and emojis.
Read more: https://telegra.ph/Unigram-40-05-28
Microsoft Store
Build 4.0, the biggest release so far
What's new:
• Chat folders.
• Stream Videos and Audio files.
• Improved stickers, GIFs and emojis.
Read more: https://telegra.ph/Unigram-40-05-28
Microsoft Store
Telegraph
Unigram 4.0
Chat folders Organize chats into Chat Folders if you have too many chats. Create custom folders with flexible settings, or use default recommendations. Pin an unlimited number of chats in each folder. Right click on a chat in your chat list to add it to a…
JAWS, Unigram: Script revision 108 released:
* Briefly tested against today's major Unigram 4.0 release.
* Fixed a problem that sometimes caused JAWS to appear to read the wrong chat list entry under at least Unigram 3.x.
* Directives file included for manual installers.
See Revision History for details.
https://www.dlee.org/unigram/
* Briefly tested against today's major Unigram 4.0 release.
* Fixed a problem that sometimes caused JAWS to appear to read the wrong chat list entry under at least Unigram 3.x.
* Directives file included for manual installers.
See Revision History for details.
https://www.dlee.org/unigram/