Cybersecuritynews
Telegram Phishing Attack Exploits Authentication Workflows for User Session Hijacking
First seen 9 Feb 2026, 13:02 UTC
•

•24.3
Export
Article Content
Browse articles
A new phishing campaign targeting Telegram users has emerged, utilizing the platform's authentication workflows to hijack fully authorized user sessions. This attack differs from traditional methods by avoiding password harvesting and instead manipulating legitimate login processes. Users of Telegram are at risk as attackers gain access to their accounts without needing to steal credentials directly.
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Timeline
2026-02-09
New phishing campaign reported targeting Telegram users
Recent
Attackers manipulate Telegram's authentication workflows
More articles in this cluster
Continue Reading
Gamaredon Exploits WinRAR Vulnerability in Ongoing Ukraine Campaign
GhostShell Malware Targets Ukraine's UAV and Defense Supply Chain
SBU and FBI Expose Russian Cyber Campaign Targeting Messaging Accounts
Gamaredon APT Escalates Cyber Operations Against Ukraine in 2025
EU Sanctions Russia Over Ongoing Cyber Espionage Campaign
Russia's Hybrid Warfare Threatens UK with Cyberattacks and Sabotage