• Trending
  • Comments
  • Latest
FBI nabs Nigerian ‘tech queen’ Sapphire Egemasi in multi-million dollar fraud scheme

FBI arrests Nigerian ‘tech queen’ Sapphire Egemasi in $1.3M heist targeting U.S. government

06/05/2025 - Updated On 06/17/2025
Deutsche Bank eyes stablecoin launch as tokenization wave hits European banking

Deutsche Bank eyes stablecoin launch as tokenization wave hits European banking

06/09/2025 - Updated On 07/07/2025
Bitcoin ETF Flows surge as Fidelity, ARK & BlackRock attract $667M in one day

Bitcoin ETF Flows surge as Fidelity, ARK & BlackRock attract $667M in one day

05/20/2025
Polygon Discord Channel Hacked, Throws Crypto Community in Turmoil

Polygon Discord Channel Hacked, Throws Crypto Community in Turmoil

2
Bitcoin reclaims $107,000 as Iran-Israel ceasefire cools market tensions

Bitcoin reclaims $107,000 as Iran-Israel ceasefire cools market tensions

2

Hello world!

1
India's largest DEX, CoinDCX crypto exchange, loses $44M in sophisticated server breach

India’s largest CEX, CoinDCX crypto exchange, loses $44M in sophisticated hack

07/19/2025
SharpLink Gaming’s ETH Holdings Skyrocket to $1.2B

SharpLink Gaming’s ETH holdings skyrocket to $1.2b amid aggressive accumulation strategy

07/19/2025 - Updated On 07/20/2025
BTC after all-time high

Bitcoin miners and whales dump BTC after all-time high, $3.5 billion profit taken

07/19/2025
  • Trending
  • Comments
  • Latest
FBI nabs Nigerian ‘tech queen’ Sapphire Egemasi in multi-million dollar fraud scheme

FBI arrests Nigerian ‘tech queen’ Sapphire Egemasi in $1.3M heist targeting U.S. government

06/05/2025 - Updated On 06/17/2025
Deutsche Bank eyes stablecoin launch as tokenization wave hits European banking

Deutsche Bank eyes stablecoin launch as tokenization wave hits European banking

06/09/2025 - Updated On 07/07/2025
Bitcoin ETF Flows surge as Fidelity, ARK & BlackRock attract $667M in one day

Bitcoin ETF Flows surge as Fidelity, ARK & BlackRock attract $667M in one day

05/20/2025
Polygon Discord Channel Hacked, Throws Crypto Community in Turmoil

Polygon Discord Channel Hacked, Throws Crypto Community in Turmoil

2
Bitcoin reclaims $107,000 as Iran-Israel ceasefire cools market tensions

Bitcoin reclaims $107,000 as Iran-Israel ceasefire cools market tensions

2

Hello world!

1
India's largest DEX, CoinDCX crypto exchange, loses $44M in sophisticated server breach

India’s largest CEX, CoinDCX crypto exchange, loses $44M in sophisticated hack

07/19/2025
SharpLink Gaming’s ETH Holdings Skyrocket to $1.2B

SharpLink Gaming’s ETH holdings skyrocket to $1.2b amid aggressive accumulation strategy

07/19/2025 - Updated On 07/20/2025
BTC after all-time high

Bitcoin miners and whales dump BTC after all-time high, $3.5 billion profit taken

07/19/2025
Sunday, July 20, 2025
  • Login
The Bit Gazette
  • Home
  • News
  • Crypto
  • Expert Analysis
  • Finance
  • Tech
  • Sponsored Articles
  • Contact
No Result
View All Result
The Bit Gazette
No Result
View All Result
Home News

Hackers intensify attacks on TeleMessage app vulnerability, IPs probe for weakness

Security researchers warn of ongoing exploitation attempts targeting unpatched systems, with government and enterprise users at risk.

by Mark Frost
10 hours ago
in News
Reading Time: 3 mins read
0
Hackers intensify attacks on TeleMessage app vulnerability, IPs probe for weakness

Hackers intensify attacks on TeleMessage app vulnerability, IPs probe for weakness

Share on FacebookShare on Twitter

A critical flaw in the TeleMessage app (CVE-2025-48927) has sparked a surge in cyberattacks, with threat actors aggressively probing vulnerable systems.

According to a new report from threat intelligence firm GreyNoise, at least 11 IP addresses have actively attempted to exploit the TeleMessage app vulnerability since April, while over 2,000 additional IPs may be conducting reconnaissance.

The flaw, which exposes sensitive user data, highlights escalating risks for government agencies and enterprises reliant on the compliance-focused messaging platform.

How the TeleMessage app vulnerability works

The TeleMessage app vulnerability stems from an unsecured legacy feature in Spring Boot Actuator, a tool used for monitoring applications. Hackers can exploit the publicly accessible /heapdump endpoint to extract data without authentication.

“This isn’t just a theoretical risk—attackers are actively trying to steal data from unpatched systems,” said Howdy Fisher, a GreyNoise researcher. “While TeleMessage has patched the issue, delays in user-side updates leave many exposed.”

GreyNoise’s data reveals 1,582 IPs specifically targeting the /health endpoint, a common indicator of Spring Boot Actuator deployments. The TeleMessage app vulnerability is particularly concerning given its user base, which includes U.S. Customs and Border Protection, crypto exchange Coinbase, and former government officials like Congressman Mike Waltz.

Why the TeleMessage app vulnerability matters

Unlike consumer-focused apps, TeleMessage is designed for regulated industries, offering message archiving for compliance. Its acquisition by U.S. firm Smarsh in 2024 raised its profile, but a May 2024 breach, which saw hackers steal app files, already eroded trust.

Hackers intensify attacks on TeleMessage app vulnerability, thousands of IPs probing for weakness
Hackers intensify attacks on TeleMessage app vulnerability, thousands of IPs probing for weakness

“This isn’t just about leaked chats. For government and corporate users, it could mean compromised sensitive communications,” a cybersecurity analyst familiar with the TeleMessage app vulnerability told Cointelegraph under anonymity.

The timing amplifies concerns: 2025 has seen record crypto thefts ($2.17 billion so far, per Chainalysis), with hackers employing phishing, malware, and even physical “wrench attacks” to steal assets. The TeleMessage app vulnerability adds another vector for credential harvesting.

How to mitigate the TeleMessage app vulnerability

GreyNoise urges users to:

  1. Block malicious IPs linked to exploitation attempts.

  2. Disable the /heapdump endpoint or restrict its access.

  3. Limit exposure to Actuator endpoints.

Despite TeleMessage’s assurances that patches are deployed, experts warn that delayed updates—common in large organizations—prolong the risk.

“Patch timelines vary. Not every user applies fixes immediately,” Fisher emphasized.

The bigger picture: A year of escalating cyberthreats

The TeleMessage app vulnerability fits a broader trend of high-value digital exploits. Recent months have seen:

  • The February hack of Bybit, draining millions in crypto.

  • Darknet markets selling credentials for thousands of dollars.

  • Social engineering schemes targeting crypto holders.

With 2,009 IPs scanning for Spring Boot Actuator endpoints in 90 days, the TeleMessage app vulnerability may be the tip of the iceberg.

Key note:

While TeleMessage has addressed the flaw, systemic delays in cybersecurity hygiene leave organizations exposed. For compliance-dependent users, proactive mitigation is non-negotiable.

Tags: app securitycompliance messagingcyberattackscybersecuritydata breachenterprise securityGreyNoise reporthacking newsSpring Boot ActuatorTeleMessage vulnerabilitythreat intelligencezero-day exploit
Share197Tweet123
Mark Frost

Mark Frost

Sunderland-born crypto enthusiast, cycling fanatic, and wordsmith. As co-founder and lead editor of The Bit Gazette, Mark combines his passion for blockchain with a knack for breaking down complex stories into engaging content. When he's not tracking the latest crypto trends, you'll find him on two wheels—exploring backroads or clocking miles on his favorite cycling routes. Dedicated to delivering sharp, insightful journalism in the fast-moving world of digital assets. New

  • Trending
  • Comments
  • Latest
FBI nabs Nigerian ‘tech queen’ Sapphire Egemasi in multi-million dollar fraud scheme

FBI arrests Nigerian ‘tech queen’ Sapphire Egemasi in $1.3M heist targeting U.S. government

06/05/2025 - Updated On 06/17/2025
Deutsche Bank eyes stablecoin launch as tokenization wave hits European banking

Deutsche Bank eyes stablecoin launch as tokenization wave hits European banking

06/09/2025 - Updated On 07/07/2025
Bitcoin ETF Flows surge as Fidelity, ARK & BlackRock attract $667M in one day

Bitcoin ETF Flows surge as Fidelity, ARK & BlackRock attract $667M in one day

05/20/2025
Polygon Discord Channel Hacked, Throws Crypto Community in Turmoil

Polygon Discord Channel Hacked, Throws Crypto Community in Turmoil

2
Bitcoin reclaims $107,000 as Iran-Israel ceasefire cools market tensions

Bitcoin reclaims $107,000 as Iran-Israel ceasefire cools market tensions

2

Hello world!

1
India's largest DEX, CoinDCX crypto exchange, loses $44M in sophisticated server breach

India’s largest CEX, CoinDCX crypto exchange, loses $44M in sophisticated hack

07/19/2025
SharpLink Gaming’s ETH Holdings Skyrocket to $1.2B

SharpLink Gaming’s ETH holdings skyrocket to $1.2b amid aggressive accumulation strategy

07/19/2025 - Updated On 07/20/2025
BTC after all-time high

Bitcoin miners and whales dump BTC after all-time high, $3.5 billion profit taken

07/19/2025
The Bit Gazette

Copyright © 2025 - The Bit Gazette.

Navigate Site

  • About
  • Advertise
  • Privacy & Policy
  • Contact

Follow Us

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • Home
  • News
  • Crypto
  • Expert Analysis
  • Finance
  • Tech
  • Sponsored Articles
  • Contact

Copyright © 2025 - The Bit Gazette.

Are you sure want to unlock this post?
Unlock left : 0
Are you sure want to cancel subscription?