ICEBlock: A Controversial App for Reporting ICE Sightings

2025-09-02
ICEBlock: A Controversial App for Reporting ICE Sightings

Joshua Aaron's ICEBlock app, designed to anonymously report ICE sightings, has garnered over a million downloads but faces significant controversy. Developed without input from immigrant advocacy groups, the app's unverified reports lead to numerous false positives, causing panic. The developer's refusal to open-source the app, coupled with a lack of transparency and apparent misunderstandings of security concepts, raises serious security concerns. While the developer's intentions may be good, the app's effectiveness and security are questionable and require improvement.

Read more
Tech

410GB of TeleMessage Heap Dumps Leaked: Unveiling the Secret Communications of Politicians and Business Elites

2025-05-26
410GB of TeleMessage Heap Dumps Leaked: Unveiling the Secret Communications of Politicians and Business Elites

DDoSecrets leaked 410GB of heap dump data from TeleMessage, an Israeli company, revealing communications from disaster responders, customs officials, US diplomats, White House staff, and Secret Service members. A trivial vulnerability allowed anyone to download Java heap dumps from the server. Analysis shows the data includes chat logs from various platforms like WhatsApp, Telegram, and Signal, some encrypted but much of it unencrypted, containing text messages, attachments, and metadata. Researchers identified thousands of TeleMessage customers, including major corporations from finance, energy, and other sectors, such as JPMorgan Chase and Scotiabank. While no extremely sensitive information has yet surfaced, the dataset offers numerous leads potentially sparking further investigations and news stories.

Read more

Open-Source Tool Unearths Secrets from Massive TeleMessage Hack

2025-05-26
Open-Source Tool Unearths Secrets from Massive TeleMessage Hack

The author has open-sourced TeleMessage Explorer, a tool designed to analyze the massive data breach from TeleMessage, a company whose modified Signal app was used by Trump's former national security advisor. The tool allows journalists and researchers to sift through the data and uncover valuable insights. The post details how to use the tool, showcasing its ability to explore data, including Signal messages from a 24-year-old White House staffer. TeleMessage clients include DC Police, Andreessen Horowitz, and JP Morgan. The author encourages journalists to use the tool to unearth more stories while the data remains current.

Read more
Tech

SignalGate Continues: 410GB of TeleMessage Data Dumped

2025-05-20
SignalGate Continues: 410GB of TeleMessage Data Dumped

Security researcher Micah Lee revealed a massive 410GB data breach from TeleMessage, an Israeli firm providing archiving services for encrypted messaging apps like Signal and WhatsApp. TeleMessage's software was used by US government officials, leading to the 'SignalGate' scandal. The leaked data includes sensitive information, such as plaintext messages and metadata, highlighting vulnerabilities in TeleMessage's products and the risks associated with government reliance on encrypted message archiving services. The release comes from Distributed Denial of Secrets.

Read more
Tech

Trump Officials' Modified Signal App Leaked Plaintext Chat Logs

2025-05-06
Trump Officials' Modified Signal App Leaked Plaintext Chat Logs

A security researcher discovered that TeleMessage, the maker of a modified Signal app (TM SGNL) used by former Trump administration officials, has access to users' plaintext chat logs. The app archived messages on a public AWS cloud server, and vulnerabilities led to a hack exposing a trove of chat logs, including Signal, Telegram, and WhatsApp messages. TeleMessage, an Israeli company whose founder is a former IDF intelligence officer, raises concerns about potential sharing of data with Israeli intelligence. This incident highlights the risks of using modified messaging apps and the potential threat to national security.

Read more
Tech

Former National Security Advisor Waltz Caught Using Secret Signal Archiving App

2025-05-04
Former National Security Advisor Waltz Caught Using Secret Signal Archiving App

A Reuters photographer captured a photo of former National Security Advisor Mike Waltz checking his Signal messages during a Trump cabinet meeting. He wasn't using the official Signal app, but a modified version called TM SGNL, which automatically archives plaintext messages. Developed by TeleMessage, a company with executives linked to the Israeli Defense Forces' intelligence unit, TM SGNL likely violates Signal's open-source license. The app is primarily distributed through enterprise mobile device management (MDM) services, suggesting the Trump administration may have used it for classified discussions and centralized device management. The article also uncovered detailed documentation and a video revealing potential storage locations for chat logs, including Microsoft 365, SMTP, and SFTP. This raises significant security concerns.

Read more
Tech

Unpacking 200GB of Paramilitary Chat Logs: A Data Dive

2025-03-06
Unpacking 200GB of Paramilitary Chat Logs: A Data Dive

Over 200GB of chat logs and recordings from paramilitary groups like the American Patriots Three Percent (APIII) and Oath Keepers, obtained by an undercover operative, have been released. This massive dataset presents a significant challenge for researchers. The author plans a series of blog posts analyzing this data, starting with a script to import the Telegram chat exports (HTML files) into a SQL database for easier searching and analysis. The data includes various file types such as videos, voice messages, and documents, offering a rich, if unwieldy, source of information.

Read more