Уровень 0 · материалов: 4
В кластер входят документы, описывающие риски безопасности и вредоносную активность стороннего клиента Telega, и не входят документы о других модификациях Telegram или общих методах шифрования.
Общие признаки: клиент Telega, атаки MitM, кража данных и шпионаж, компрометация безопасности Telegram, цензура контента
Группа выше: Атаки на аккаунты и вредоносные клиенты
Смысл: The main idea is that the Telega client is not a safe third-party app but a malicious tool designed to intercept all Telegram traffic, disable security features, and implement state-aligned censorship via MITM attacks and custom moderation panels.
The Telega client implements a sophisticated MITM attack and censorship system to intercept user data and block content, likely in cooperation with Russian regulatory authorities.
Смысл: The main idea is that the Telega messenger is a malicious wrapper around Telegram that uses a MitM attack to spy on users, censor content, and steal authentication keys, despite claiming to use official Telegram encryption.
Technical analysis proves the Telega app is a MitM spy tool that intercepts Telegram sessions, reads encrypted chats, and implements server-side censorship.
Смысл: The main idea is to warn users against using the 'Telega' Telegram client by exposing its false claims of being open source, its legal violations of the GPL license, and severe security vulnerabilities that enable data theft and government traffic interception.
A reverse engineering analysis reveals that the 'Telega' Telegram client is a security risk featuring GPL violations, data leaks, and embedded government certificates for traffic interception.
Смысл: The main idea is to provide a transparent security assessment of the Telega fork, concluding that while it doesn't steal private messages, it severely compromises metadata privacy and call security by integrating VK/Mail.ru infrastructure and disabling critical SSL checks.
Telega allows Telegram to work under blocks but compromises call security and metadata privacy by routing traffic through VK/Mail.ru servers with critical SSL vulnerabilities.