TEKNOLOJİ

Telegram'da güvenlik açığı!

Telegram’ın Android uygulaması, kötü amaçlı videolar gönderen sıfırıncı gün açığı tarafından hedef alındı

Abone Ol

 ESET araştırmacıları, Haziran 2024 tarihli bir yeraltı forum gönderisinde belirtilmemiş bir fiyatla satışa sunulan ve Telegram’ın Android uygulamasını hedef alan bir sıfır gün açığı keşfetti.

ESET'in "EvilVideo" adını verdiği bir güvenlik açığını kötüye kullanan saldırganlar Telegram kanalları, grupları ve sohbetleri aracılığıyla kötü amaçlı Android yüklerini paylaşabiliyor ve bunların multimedya dosyaları gibi görünmesini sağlayabiliyordu.

Açık, yalnızca 10.14.4 ve daha eski Android Telegram sürümlerinde çalışıyor.

Yapılan analizde, istismarın Telegram'ın 10.14.4 ve daha eski sürümlerinde çalıştığını ortaya koydu. Bunun nedeni, geliştiricilerin özel olarak hazırlanmış multimedya dosyalarını Telegram sohbetlerine veya kanallarına programlı olarak yüklemelerine izin verdiği için belirli bir yükün büyük olasılıkla Telegram API kullanılarak hazırlanmış olması düşünülüyor.

Hatırlanacağı gibi ESET, 26 Haziran 2024'te EvilVideo güvenlik açığını keşfettikten sonra, koordineli ifşa politikasını izledi ve bunu Telegram'a bildirmesine karşın o sırada herhangi bir yanıt alamamıştı. Güvenlik açığını 4 Temmuz'da tekrar bildirdi ve bu kez Telegram, ekibinin EvilVideo'yu araştırdığını doğrulamak için aynı gün ESET'e ulaştı. Telegam daha sonra 11 Temmuz'da 10.14.5 sürümünü göndererek sorunu çözdü. Güvenlik açığı Android için Telegram'ın 10.14.4'e kadar olan tüm sürümlerini etkiliyordu ancak 10.14.5 sürümünden itibaren güncellendi. 

{ "vars": { "account": "G-KFE40D1TR1" }, "triggers": { "trackPageview": { "on": "visible", "request": "pageview" } } } { "vars": { "account": "G-KFE40D1TR1" }, "triggers": { "trackPageview": { "on": "visible", "request": "pageview" } } } { "vars": { "account": "G-KFE40D1TR1" }, "triggers": { "trackPageview": { "on": "visible", "request": "pageview" } } } { "vars": { "account": "G-KFE40D1TR1" }, "triggers": { "trackPageview": { "on": "visible", "request": "pageview" } } } # admatic.com.tr ads.txt lines | Date: 2025-06-10 admatic.com.tr, adm-pub-576268717, DIRECT, uufps1dh5stc6euk connectad.io, 508, RESELLER, 85ac85a30c93b3e5 adform.com, 768, RESELLER, 9f5210a2f0999e32 rubiconproject.com, 26800, RESELLER, 0bfd66d529a55807 openx.com, 537145117, RESELLER, 6a698e2ec38604c6 lijit.com, 244287, RESELLER, fafdf38b16bf6b2b openx.com, 538959099, RESELLER, 6a698e2ec38604c6 pubmatic.com, 137711, RESELLER, 5d62403b186f2ace pubmatic.com, 156212, RESELLER, 5d62403b186f2ace appnexus.com, 1019, RESELLER, f5ab79cb980f11d1 adform.com, 3266, DIRECT ogury.com, 6daed14b-1822-4904-8e4c-a21d4be0b210, RESELLER appnexus.com, 11470, RESELLER pubmatic.com, 163238, RESELLER, 5d62403b186f2ace smartadserver.com, 4537, RESELLER, 060d053dcf45cbf3 rubiconproject.com, 25198, RESELLER, 0bfd66d529a55807 video.unrulymedia.com, 533898005, RESELLER dauup.com, 34141, RESELLER rubiconproject.com, 20086, RESELLER, 0bfd66d529a55807 appnexus.com, 14416, RESELLER appnexus.com, 14808, RESELLER rubiconproject.com, 27026, RESELLER, 0bfd66d529a55807 adform.com, 3240, RESELLER rtbhouse.com, f2PMUrbTLheS4d67McTq, DIRECT rtbhouse.com, RcZfc1nKUmkHGXLIwZQb, DIRECT rtbhouse.com, eqt3MD0DmNFukxfZqFm0, DIRECT rtbhouse.com, KicWDRpi0GCWX2lQJcYn, DIRECT adform.com, 2968, RESELLER onetag.com, 8e4c756bde8b2d3, DIRECT appnexus.com, 13099, RESELLER pubmatic.com, 161593, RESELLER, 5d62403b186f2ace rubiconproject.com, 11006, RESELLER, 0bfd66d529a55807 adform.com, 3215, RESELLER video.unrulymedia.com, 6111915185540403805, RESELLER rtbhouse.com, qbax0oJZ14CFN7BQIJcp, RESELLER rtbhouse.com, qYjwzKx0LtW8zyxLj0Qn, RESELLER openx.com, 540861995, DIRECT, 6a698e2ec38604c6 openx.com, 558237126, DIRECT, 6a698e2ec38604c6 adform.com, 2904, RESELLER richaudience.com, kBjBHJPcXM, RESELLER appnexus.com, 8233, RESELLER pubmatic.com, 81564, RESELLER, 5d62403b186f2ace pubmatic.com, 156538, RESELLER, 5d62403b186f2ace rubiconproject.com, 13510, RESELLER netaddiction.tech, net-pub-6615266254, DIRECT, uufps1dh5stc6euk adform.com, 2668, RESELLER appnexus.com, 11673, RESELLER, f5ab79cb980f11d1 pubmatic.com, 155968, RESELLER, 5d62403b186f2ace rubiconproject.com, 11398, RESELLER, 0bfd66d529a55807 openx.com, 541163168, RESELLER, 6a698e2ec38604c6 rtbhouse.com, e3qznauVqenvza0c5wWJ, RESELLER criteo.com, B-064389, RESELLER, 9fac4a4a87c2a44f themediagrid.com, BIH5U6, RESELLER, 35d5010d7789b49d luponmedia.com, 19956462, DIRECT indexexchange.com, 188165, RESELLER, 50b1c356f2c5c8fc indexexchange.com, 196757, RESELLER, 50b1c356f2c5c8fc adform.com, 1985, DIRECT, 9f5210a2f0999e32 rubiconproject.com, 12398, RESELLER, 0bfd66d529a55807 pubmatic.com, 158697, reseller, 5d62403b186f2ace pubmatic.com, 159760, RESELLER, 5d62403b186f2ace appnexus.com, 12290, RESELLER, f5ab79cb980f11d1 rubiconproject.com, 17960, RESELLER, 0bfd66d529a55807 adform.com, 2865, RESELLER appnexus.com, 9393, RESELLER, f5ab79cb980f11d1 indexexchange.com, 191503, RESELLER, 50b1c356f2c5c8fc openx.com, 559680764, RESELLER, 6a698e2ec38604c6 rubiconproject.com, 23844, RESELLER, 0bfd66d529a55807 smartadserver.com, 3056, RESELLER, 060d053dcf45cbf3 yahoo.com, 49648, RESELLER pubmatic.com, 161527, RESELLER, 5d62403b186f2ace pubmatic.com, 158355, RESELLER, 5d62403b186f2ace lijit.com, 260380, RESELLER, fafdf38b16bf6b2b appnexus.com, 11924, RESELLER, f5ab79cb980f11d1 amxrtb.com, 105199787, DIRECT appnexus.com, 11786, RESELLER sharethrough.com, a6a34444, RESELLER eskimi.com, 2020000676, DIRECT admatic.com.tr, adm-pub-2977111241, DIRECT, uufps1dh5stc6euk pixad.com.tr, px-pub-6514176248, DIRECT, uufps1dh5stc6euk rubiconproject.com, 24266, RESELLER, 0bfd66d529a55807 pubmatic.com, 158849, DIRECT, 5d62403b186f2ace adform.com, 2083, DIRECT rtbhouse.com, 36401e736811e8034581, DIRECT rtbhouse.com, Bl90aHDHpnUdxORfqhhI, DIRECT rubiconproject.com, 25100, RESELLER, 0bfd66d529a55807 rubiconproject.com, 25102, RESELLER, 0bfd66d529a55807 # admatic.com.tr ads.txt lines | Date: 2025-06-13 admatic.com.tr, adm-pub-576268717, DIRECT, uufps1dh5stc6euk connectad.io, 508, RESELLER, 85ac85a30c93b3e5 adform.com, 768, RESELLER, 9f5210a2f0999e32 rubiconproject.com, 26800, RESELLER, 0bfd66d529a55807 openx.com, 537145117, RESELLER, 6a698e2ec38604c6 lijit.com, 244287, RESELLER, fafdf38b16bf6b2b openx.com, 538959099, RESELLER, 6a698e2ec38604c6 pubmatic.com, 137711, RESELLER, 5d62403b186f2ace pubmatic.com, 156212, RESELLER, 5d62403b186f2ace appnexus.com, 1019, RESELLER, f5ab79cb980f11d1 adform.com, 3266, DIRECT ogury.com, 6daed14b-1822-4904-8e4c-a21d4be0b210, RESELLER appnexus.com, 11470, RESELLER pubmatic.com, 163238, RESELLER, 5d62403b186f2ace smartadserver.com, 4537, RESELLER, 060d053dcf45cbf3 rubiconproject.com, 25198, RESELLER, 0bfd66d529a55807 video.unrulymedia.com, 533898005, RESELLER dauup.com, 34141, RESELLER rubiconproject.com, 20086, RESELLER, 0bfd66d529a55807 appnexus.com, 14416, RESELLER appnexus.com, 14808, RESELLER rubiconproject.com, 27026, RESELLER, 0bfd66d529a55807 adform.com, 3240, RESELLER rtbhouse.com, f2PMUrbTLheS4d67McTq, DIRECT rtbhouse.com, RcZfc1nKUmkHGXLIwZQb, DIRECT rtbhouse.com, eqt3MD0DmNFukxfZqFm0, DIRECT rtbhouse.com, KicWDRpi0GCWX2lQJcYn, DIRECT adform.com, 2968, RESELLER onetag.com, 8e4c756bde8b2d3, DIRECT appnexus.com, 13099, RESELLER pubmatic.com, 161593, RESELLER, 5d62403b186f2ace rubiconproject.com, 11006, RESELLER, 0bfd66d529a55807 adform.com, 3215, RESELLER video.unrulymedia.com, 6111915185540403805, RESELLER rtbhouse.com, qbax0oJZ14CFN7BQIJcp, RESELLER rtbhouse.com, qYjwzKx0LtW8zyxLj0Qn, RESELLER openx.com, 540861995, DIRECT, 6a698e2ec38604c6 openx.com, 558237126, DIRECT, 6a698e2ec38604c6 adform.com, 2904, RESELLER richaudience.com, kBjBHJPcXM, RESELLER appnexus.com, 8233, RESELLER pubmatic.com, 81564, RESELLER, 5d62403b186f2ace pubmatic.com, 156538, RESELLER, 5d62403b186f2ace rubiconproject.com, 13510, RESELLER netaddiction.tech, net-pub-6615266254, DIRECT, uufps1dh5stc6euk adform.com, 2668, RESELLER appnexus.com, 11673, RESELLER, f5ab79cb980f11d1 pubmatic.com, 155968, RESELLER, 5d62403b186f2ace rubiconproject.com, 11398, RESELLER, 0bfd66d529a55807 openx.com, 541163168, RESELLER, 6a698e2ec38604c6 rtbhouse.com, e3qznauVqenvza0c5wWJ, RESELLER criteo.com, B-064389, RESELLER, 9fac4a4a87c2a44f themediagrid.com, BIH5U6, RESELLER, 35d5010d7789b49d luponmedia.com, 19956462, DIRECT indexexchange.com, 188165, RESELLER, 50b1c356f2c5c8fc indexexchange.com, 196757, RESELLER, 50b1c356f2c5c8fc adform.com, 1985, DIRECT, 9f5210a2f0999e32 rubiconproject.com, 12398, RESELLER, 0bfd66d529a55807 pubmatic.com, 158697, reseller, 5d62403b186f2ace pubmatic.com, 159760, RESELLER, 5d62403b186f2ace appnexus.com, 12290, RESELLER, f5ab79cb980f11d1 rubiconproject.com, 17960, RESELLER, 0bfd66d529a55807 adform.com, 2865, RESELLER appnexus.com, 9393, RESELLER, f5ab79cb980f11d1 indexexchange.com, 191503, RESELLER, 50b1c356f2c5c8fc openx.com, 559680764, RESELLER, 6a698e2ec38604c6 rubiconproject.com, 23844, RESELLER, 0bfd66d529a55807 smartadserver.com, 3056, RESELLER, 060d053dcf45cbf3 yahoo.com, 49648, RESELLER pubmatic.com, 161527, RESELLER, 5d62403b186f2ace pubmatic.com, 158355, RESELLER, 5d62403b186f2ace lijit.com, 260380, RESELLER, fafdf38b16bf6b2b appnexus.com, 11924, RESELLER, f5ab79cb980f11d1 amxrtb.com, 105199787, DIRECT appnexus.com, 11786, RESELLER sharethrough.com, a6a34444, RESELLER eskimi.com, 2020000676, DIRECT admatic.com.tr, adm-pub-2977111241, DIRECT, uufps1dh5stc6euk pixad.com.tr, px-pub-6514176248, DIRECT, uufps1dh5stc6euk rubiconproject.com, 24266, RESELLER, 0bfd66d529a55807 pubmatic.com, 158849, DIRECT, 5d62403b186f2ace adform.com, 2083, DIRECT rtbhouse.com, 36401e736811e8034581, DIRECT rtbhouse.com, Bl90aHDHpnUdxORfqhhI, DIRECT rubiconproject.com, 25100, RESELLER, 0bfd66d529a55807 rubiconproject.com, 25102, RESELLER, 0bfd66d529a55807