Cybersecuritynews Fake Telegram Download Site Distributes Stealthy Malware
Article Content
- •A fake Telegram download site is distributing malware via a typosquatted domain.
- •The malicious installer masquerades as a legitimate setup file for Telegram.
- •Users are advised to avoid downloading software from unofficial sources.
A new malware campaign is targeting Telegram users through a typosquatted website, telegrgam[.]com, which closely resembles the official Telegram download portal. The site offers a trojanized installer named tsetup-x64.6.exe, tricking users into downloading malicious software. Once executed, the installer initiates a multi-stage attack chain, compromising affected systems. This campaign exploits user trust and could potentially impact a large number of Telegram users who mistakenly visit the fraudulent site. The attack method relies on social engineering tactics to deceive users into downloading the malware. Currently, there are no specific numbers on the number of affected users or systems. Security experts are advising caution when downloading software from unofficial sources. The situation is ongoing as the malicious site remains active.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Continue Reading
CVE-2015-3306 Exploited in ProFTPD FTP Servers CVE-2015-3306, a vulnerability in ProFTPD 1.3.5, allows remote attackers to read and write arbitrary files using the SITE CPFR and SITE CPTO commands. This exploit can lead to unauthorized access and potential remote code execution, as the commands are executed with the privileges of the ProFTPD service. Active…
CISA Mandates Urgent Patching of Five Critical Flaws Exploited by Flax Typhoon The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has ordered federal agencies to patch five critical vulnerabilities by October 11, 2026, following exploitation by the China-linked hacking group Flax Typhoon. The vulnerabilities, added to CISA's Known Exploited Vulnerabilities (KEV) catalog, include…