Security breach on telegram secret chat for iPhone

OK, you’ve just clicked on NEW SECRET CHAT on Telegram iPhone App.
It guarantees you:
* Use end-to -end encryption
* Leave no trace on our servers
* Self-destruct timer
* Do not allow forwarding

So you set the self-destruct timer to the minimum possible value.
OK, now all the information that you send to your correspondent are not decipherable by third parties and should self-destruct without leaving any trace behind.

NOT EXACTLY
Even if you write to a someone who doesn’t know what a screenshot is, the photo you just sent left a trace!

If you thought it was safe sending those pictures to your boyfriend, you probably want to read to the end.
Let see how:
* Create a NEW SECRET CHAT with a friend
* Set Self-Destruct Timer to 2s
* Ask her/him to send you a picture
* When the get the notification, just open the Telegram App, without tapping on the image preview. Let expire the Self-Destruct Timer.
* Well. Photo lost forever? Untraceable?
* Check in your Camera Roll…
* SURPRISE!

Tested on Telegram v2.0.1 on iPhone 5

2018-02-27T13:29:46+00:00

Leave A Comment

Privacy Preference Center

Strictly Necessary

Necessary cookies help make a website usable by enabling basic functions like page navigation and access to secure areas of the website. The website cannot function properly without these cookies.

incap_ses_#, visid_incap_#
incap_ses_#, visid_incap_#

Statistic

Statistic cookies help website owners to understand how visitors interact with websites by collecting and reporting information anonymously.

__utma, __utmb, __utmc, __utmt, __utmz, _ga, _gat, _gid
__utma, __utmb, __utmc, __utmt, __utmz
_ga, _gat, _gid

Marketing

Marketing cookies are used to track visitors across websites. The intention is to display ads that are relevant and engaging for the individual user and thereby more valuable for publishers and third party advertisers.

collect, r/collect
collect
r/collect

Unclassified

Unclassified cookies are cookies that we are in the process of classifying, together with the providers of individual cookies.

___utmvbiEuvSvB, ___utmvbiEuwSvB, ___utmvbmEuykvY, ___utmvmiEuvSvB, ___utmvmiEuwSvB, ___utmvmmEuykvY, _gd#, nlbi_45800, nlbi_45803, SLDASHBOARD, viewed_cookie_policy
___utmvbBluvSvB,___utmvmBluvSvB,___utmvmBluwSvB, ___utmvmDEuykvY, nlbi_45800, nlbi_45803, SLDASHBOARD
_gd#, gdpr[allowed_cookies], gdpr[consent_types], viewed_cookie_policy

Close your account?

Your account will be closed and all data will be permanently deleted and cannot be recovered. Are you sure?

Are you sure?

By disagreeing you will no longer have access to our site and will be logged out.