HELLFIRE https://www.theregister.com/2025/07/02/cisa_telemessage_patch/ https://www.cisa.gov/news-events/alerts/2025/07/01/cisa-adds-two-known-exploited-vulnerabilities-catalog The US security watchdog CISA has warned that malicious actors are actively exploiting two flaws in the Signal clone TeleMessage TM SGNL, and has directed federal agencies to patch the flaws or discontinue use of the app by July 22. … Now CISA has said that two of the flaws found in TeleMessage, CVE-2025-48927 and CVE-2025-48928, are under “frequent attack vectors for malicious cyber actors and pose significant risks to the federal enterprise,” and added them to its Known Exploited Vulnerabilities Catalog, forcing Federal Civilian Executive Branch agencies to apply vendor-supplied mitigations or discontinue use of the product within the deadline. … Regards
egeezer HELLFIRE So they can continue using it until 22 JUL. Hey, what damage can hackers do with less than a three weeks grace period? 😉
GrumpyCanadian Maybe that’s how the Iranians knew to move their stockpile and fortify their installations. Then again, maybe somebody added former President Ahmadinejad to the chat. 😉