Telegram Bot API flaw gives threat actors Command and Control

New research reveals that the Telegram encrypted messaging service actually isn’t quite as secure as users might like to think.

Forcepoint researchers were investigating the GoodSender malware when they came across what they call “a significant flaw” in the way that Telegram handles messages that are sent through the Telegram Bot API. Here is what they found.

